A vulnerability, classified as critical, was found in Linux Kernel up to 6.12.90/6.18.32/7.0.9. Impacted is the function __driver_attach of the component PCI. Such manipulation of the argument driver_override leads to use after free. This vulnerability is documented as CVE-2026-53120. The attack requires being on the local network.
| Vendor | Product | Versions |
|---|---|---|
| linux | linux kernel | 782a985d7af26db39e86070d28f987cad21313c0, 782a985d7af26db39e86070d28f987cad21313c0, 782a985d7af26db39e86070d28f987cad21313c0, 782a985d7af26db39e86070d28f987cad21313c0, 3.16, 6.12.90, 6.18.32, 7.0.9 |
Updated severity to CRITICAL, added affected versions 6.12.90, 6.18.32, and 7.0.9, and noted that no exploit is available.
Initial creation