A vulnerability described as critical has been identified in Linux Kernel up to 6.6.139/6.12.89/6.18.31/7.0.8. This affects the function saa7164_dev_setup of the component media. Executing a manipulation can lead to null pointer dereference.

This vulnerability is tracked as CVE-2026-46235. The attack is only possible within the local network. No exploit exists.

Upgrading the affected component is recommended.