CVE-2026-53349 | Linux Kernel up to 7.0.12 netfilter init_conntrack.isra nf_ct_helper_expectfn_unregister expectfn improper synchronization (Nessus ID 327383 / WID-SEC-2026-2175)
A vulnerability classified as critical has been found in Linux Kernel up to 6.1.175/6.6.142/6.12.93/6.18.35/7.0.12. The affected element is the function nf_ct_helper_expectfn_unregister of the file init_conntrack.isra of the component netfilter. This manipulation of the argument expectfn causes improper synchronization.
This vulnerability is registered as CVE-2026-53349. The attack requires access to the local network. No exploit is available.
It is recommended to upgrade the affected component.