A vulnerability classified as very critical was found in Linux Kernel up to 7.1.3. Affected by this issue is the function fuse_ref_folio of the component FUSE. Such manipulation leads to use after free.

This vulnerability is traded as CVE-2026-64266. The attack may be launched remotely. There is no exploit available.

Upgrading the affected component is advised.