CVE-2026-23072 | Linux Kernel up to 6.12.67/6.18.7/6.19-rc6 l2tp_udp_encap_recv memory leak (Nessus ID 297899 / WID-SEC-2026-0324)
A vulnerability classified as critical has been found in Linux Kernel up to 6.12.67/6.18.7/6.19-rc6. Affected by this issue is the function l2tp_udp_encap_recv. Performing a manipulation results in memory leak.
This vulnerability is identified as CVE-2026-23072. The attack can only be performed from the local network. There is not any exploit available.
It is recommended to upgrade the affected component.