A vulnerability labeled as very critical has been found in Linux Kernel up to 6.18.41/7.1.5/7.2-rc4. The affected element is the function airoha_npu_send_msg of the component Airoha NPU. Executing a manipulation can lead to buffer overflow.

This vulnerability is tracked as CVE-2026-68330. The attack can be launched remotely. No exploit exists.

The affected component should be upgraded.