A vulnerability marked as very critical has been reported in Linux Kernel up to 6.6.150/6.12.102/6.18.43/7.1.7/7.2-rc5. The impacted element is the function br_multicast_leave_group of the component Bridge. This manipulation causes use after free.

This vulnerability appears as CVE-2026-74480. The attack may be initiated remotely. There is no available exploit.

It is suggested to upgrade the affected component.