A vulnerability was found in Linux Kernel up to 6.12.93/6.18.35/7.0.12. It has been declared as critical. The impacted element is the function
pppol2tp_ioctl of the component l2tp. Such manipulation of the argument sk leads to use after free.
This vulnerability is referenced as CVE-2026-53262. The attack needs to be initiated within the local network. No exploit is available.
It is recommended to upgrade the affected component.