CVE-2026-53240 | Linux Kernel up to 6.18.35/7.0.12 xfrm /ip_summed/consume_skb __input_process_payload ra_newskb use after free

SecurityVulns

A vulnerability marked as critical has been reported in Linux Kernel up to 6.18.35/7.0.12. The affected element is the function __input_process_payload of the file /ip_summed/consume_skb of the component xfrm. Performing a manipulation of the argument ra_newskb results in use after free.

This vulnerability is reported as CVE-2026-53240. The attack requires a local approach. No exploit exists.

It is suggested to upgrade the affected component.VulDB Recent EntriesRead More