A vulnerability categorized as critical has been discovered in Linux Kernel up to 7.1.4. Affected is the function
ims_pcu_irq of the component ims-pcu. The manipulation of the argument urb_in_buf/urb_ctrl/urb_ctrl_buf/actual_length/max_in_size results in out-of-bounds read.
This vulnerability is known as CVE-2026-72076. It is possible to launch the attack remotely. No exploit is available.
It is advisable to upgrade the affected component.