CVE-2026-23014 | Linux Kernel up to 6.18.5/6.19-rc4 perf hrtimer_try_to_cancel privilege escalation (Nessus ID 297050 / WID-SEC-2026-0253)
A vulnerability marked as critical has been reported in Linux Kernel up to 6.18.5/6.19-rc4. Affected is the function hrtimer_try_to_cancel of the component perf. Performing a manipulation results in privilege escalation.
This vulnerability is identified as CVE-2026-23014. The attack can only be performed from the local network. There is not any exploit available.
It is suggested to upgrade the affected component.