A vulnerability labeled as very critical has been found in Linux Kernel up to 7.2-rc1. Affected by this issue is the function afs_extract_vl_addrs of the component afs. Such manipulation leads to unchecked error condition.

This vulnerability is traded as CVE-2026-72378. The attack may be launched remotely. There is no exploit available.

The affected component should be upgraded.