CVE-2026-23404 | Linux Kernel up to 6.6.129/6.12.76/6.18.17/6.19.7/7.0-rc3 apparmor __aa_profile_list_release recursion (WID-SEC-2026-0950)
A vulnerability, which was classified as critical, was found in Linux Kernel up to 6.6.129/6.12.76/6.18.17/6.19.7/7.0-rc3. This issue affects the function __aa_profile_list_release of the component apparmor. Executing a manipulation can lead to uncontrolled recursion.
This vulnerability is tracked as CVE-2026-23404. The attack is only possible within the local network. No exploit exists.
You should upgrade the affected component.