CVE-2026-23315
HIGHwifi: mt76: Fix possible oob access in mt76_connac2_mac_write_txwi_80211()
Title source: cnaDescription
In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: Fix possible oob access in mt76_connac2_mac_write_txwi_80211() Check frame length before accessing the mgmt fields in mt76_connac2_mac_write_txwi_80211 in order to avoid a possible oob access. [fix check to also cover mgmt->u.action.u.addba_req.capab, correct Fixes tag]
References (6)
Scores
CVSS v3
7.1
EPSS
0.0001
EPSS Percentile
3.4%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
Details
CWE
CWE-125
Status
published
Products (23)
linux/Kernel
5.10.0 - 6.1.167linux
linux/Kernel
6.13.0 - 6.18.17linux
linux/Kernel
6.19.0 - 6.19.7linux
linux/Kernel
6.2.0 - 6.6.130linux
linux/Kernel
6.7.0 - 6.12.77linux
Linux/Linux
< 5.10
Linux/Linux
5.10
Linux/Linux
577dbc6c656da6997dddc6cf842b7954588f2d4e - 0fb3b94a9431a3800717e5c3b6fa2e1045a15029
Linux/Linux
577dbc6c656da6997dddc6cf842b7954588f2d4e - 4e10a730d1b511ff49723371ed6d694dd1b2c785
Linux/Linux
577dbc6c656da6997dddc6cf842b7954588f2d4e - 7ae7b093b7dba9548a3bc4766b9364b97db4732d
... and 13 more
Published
Mar 25, 2026
Tracked Since
Mar 25, 2026