A vulnerability, which was classified as critical, has been found in Linux Kernel up to 6.12.27/6.14.5/6.15-rc4. Affected by this issue is the function ksmbd_session_rpc_open. The manipulation leads to use after free.

This vulnerability is handled as CVE-2025-37926. Access to the local network is required for this attack to succeed. There is no exploit available.

It is recommended to upgrade the affected component.