CVE-2026-23332 | Linux Kernel up to 6.18.16/6.19.6/7.0-rc1 cpufreq no_turbo for_each_possible_cpu null pointer dereference (Nessus ID 303727)
A vulnerability marked as critical has been reported in Linux Kernel up to 6.18.16/6.19.6/7.0-rc1. Affected by this issue is the function for_each_possible_cpu of the file /sys/devices/system/cpu/intel_pstate/no_turbo of the component cpufreq. This manipulation causes null pointer dereference.
This vulnerability is registered as CVE-2026-23332. The attack requires access to the local network. No exploit is available.
It is suggested to upgrade the affected component.