A vulnerability was found in Linux Kernel up to 6.6.147/6.12.100/6.18.41/7.1.5/7.2-rc4. It has been classified as very critical. Affected by this vulnerability is the function handle_get_version_reply of the component libceph. The manipulation of the argument front_alloc_len leads to uninitialized pointer.

This vulnerability is listed as CVE-2026-68433. The attack may be initiated remotely. There is no available exploit.

Upgrading the affected component is recommended.