CVE-2026-23060 | Linux Kernel up to 6.6.121/6.12.67/6.18.7/6.19-rc6 crypto crypto_authenc_esn_decrypt null pointer dereference (Nessus ID 297871 / WID-SEC-2026-0324)
A vulnerability marked as critical has been reported in Linux Kernel up to 6.6.121/6.12.67/6.18.7/6.19-rc6. Impacted is the function crypto_authenc_esn_decrypt of the component crypto. The manipulation leads to null pointer dereference.
This vulnerability is uniquely identified as CVE-2026-23060. The attack can only be initiated within the local network. No exploit exists.
It is suggested to upgrade the affected component.