CVE-2026-22997 | Linux Kernel up to 6.12.66/6.18.6/6.19-rc5 j1939_xtp_rx_rts_session_active reference count (EUVD-2026-4637 / Nessus ID 296530)
A vulnerability categorized as critical has been discovered in Linux Kernel up to 6.12.66/6.18.6/6.19-rc5. Affected by this vulnerability is the function j1939_xtp_rx_rts_session_active. Executing a manipulation can lead to improper update of reference count.
This vulnerability is handled as CVE-2026-22997. The attack can only be done within the local network. There is not any exploit available.
It is advisable to upgrade the affected component.