CVE-2026-46137 | Linux Kernel up to 7.1-rc2 mptcp mptcp_pm_add_timer locking
A vulnerability labeled as critical has been found in Linux Kernel up to 6.6.140/6.12.90/6.18.29/7.0.6/7.1-rc2. The impacted element is the function mptcp_pm_add_timer of the component mptcp. Executing a manipulation can lead to improper locking.
This vulnerability is registered as CVE-2026-46137. The attack requires access to the local network. No exploit is available.
The affected component should be upgraded.