A vulnerability, which was classified as critical, has been found in Linux Kernel up to 6.12.27/6.14.5/6.15-rc4. Affected by this issue is the function
ksmbd_session_rpc_open
. The manipulation leads to use after free.
This vulnerability is handled as CVE-2025-37926. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to upgrade the affected component.