A vulnerability was found in Linux Kernel up to 6.18.39/7.1.4. It has been classified as critical. This vulnerability affects the function allocinfo_start of the file /proc/allocinfo of the component alloc_tag. Performing a manipulation results in use after free.

This vulnerability was named CVE-2026-72431. The attack needs to be approached locally. There is no available exploit.

Upgrading the affected component is recommended.