CVE-2026-23156 | Linux Kernel up to 6.1.161/6.6.122/6.12.68/6.18.8 efivarfs efivar_entry_get uninitialized pointer
A vulnerability has been found in Linux Kernel up to 6.1.161/6.6.122/6.12.68/6.18.8 and classified as critical. Affected by this vulnerability is the function efivar_entry_get of the component efivarfs. This manipulation causes uninitialized pointer.
This vulnerability is tracked as CVE-2026-23156. The attack is only possible within the local network. No exploit exists.
The affected component should be upgraded.