A vulnerability described as critical has been identified in Linux Kernel up to 6.12.90/6.18.32/7.0.9. Affected by this issue is the function __driver_attach of the component bus. Executing a manipulation of the argument driver_override can lead to use after free.

This vulnerability is tracked as CVE-2026-53115. The attack is only possible within the local network. No exploit exists.

Upgrading the affected component is recommended.