CVE-2026-53198 | Linux Kernel up to 7.0.12 ksmbd setup_async_work async_requests use after free (WID-SEC-2026-2077)
A vulnerability marked as critical has been reported in Linux Kernel up to 6.1.175/6.6.142/6.12.93/6.18.35/7.0.12. This affects the function setup_async_work of the component ksmbd. Performing a manipulation of the argument async_requests results in use after free.
This vulnerability is known as CVE-2026-53198. Access to the local network is required for this attack. No exploit is available.
It is suggested to upgrade the affected component.