CVE-2026-23304 | Linux Kernel up to 7.0-rc2 net/ipv6/route.c ip6_rt_get_dev_rcu null pointer dereference (Nessus ID 311340 / WID-SEC-2026-0861)
A vulnerability was found in Linux Kernel up to 7.0-rc2. It has been rated as critical. This affects the function ip6_rt_get_dev_rcu of the file net/ipv6/route.c. Performing a manipulation results in null pointer dereference.
This vulnerability is identified as CVE-2026-23304. The attack can only be performed from the local network. There is not any exploit available.
Upgrading the affected component is advised.