CVE-2026-43284 | Linux Kernel up to 6.6.137/6.12.86/6.18.27/7.0.4 xfrm skb_splice_from_iter write-what-where condition (EUVD-2026-28535 / EDB-52585)
A vulnerability was found in Linux Kernel up to 6.6.137/6.12.86/6.18.27/7.0.4 and classified as critical. Affected by this issue is the function skb_splice_from_iter of the component xfrm. Executing a manipulation can lead to write-what-where condition.
The identification of this vulnerability is CVE-2026-43284. The attack needs to be done within the local network. Furthermore, there is an exploit available.
It is suggested to upgrade the affected component.