A vulnerability classified as critical was found in Linux Kernel up to 6.18.35/7.0.12. This issue affects the function walk_s1 of the component KVM. Executing a manipulation of the argument srcu can lead to injection.

This vulnerability appears as CVE-2026-53277. The attacker needs to be present on the local network. There is no available exploit.

Upgrading the affected component is advised.