A vulnerability was found in Linux Kernel up to 6.6.147/6.12.100/6.18.41/7.1.5/7.2-rc3. It has been rated as very critical. This affects the function
xfrm6_fill_dst of the file net/ipv6/xfrm6_policy.c of the component xfrm6. The manipulation leads to double free.
This vulnerability is documented as CVE-2026-64580. The attack can be initiated remotely. There is not any exploit available.
Upgrading the affected component is advised.