A vulnerability was found in Linux Kernel up to 6.12.96/6.18.39/7.1.4. It has been declared as very critical. Affected is the function
tpm_buf_append_salt of the file drivers/char/tpm/tpm2-sessions.c of the component TPM. Executing a manipulation can lead to use after free.
This vulnerability is handled as CVE-2026-72151. The attack can be executed remotely. There is not any exploit available.
It is recommended to upgrade the affected component.