A vulnerability classified as critical was found in Linux Kernel up to 6.12.94/6.18.37/7.1.2/7.2. This affects the function rtnl_dev_link_net_capable of the file net/core/rtnetlink.c of the component ip_gre. Such manipulation of the argument collect_md leads to improper privilege management.

This vulnerability is uniquely identified as CVE-2026-63829. Local access is required to approach this attack. No exploit exists.