A vulnerability, which was classified as critical, was found in Linux Kernel up to 6.12.87/6.18.26/7.0.3/7.1-rc1. Affected by this issue is the function loopback_check_format of the component ALSA. The manipulation of the argument streams[] results in use after free.

This vulnerability is reported as CVE-2026-46090. The attacker must have access to the local network to execute the attack. No exploit exists.

You should upgrade the affected component.