A vulnerability was found in Linux Kernel up to 6.12.92/7.0.11. It has been rated as very critical. Impacted is the function handshake_nl_accept_doit of the file net/handshake/handshake.c of the component net/handshake. This manipulation of the argument req causes use after free.

This vulnerability is tracked as CVE-2026-64523. The attack is possible to be carried out remotely. No exploit exists.

Upgrading the affected component is advised.