CVE-2026-43176
HIGHwifi: rtw89: pci: validate release report content before using for RTL8922DE
Title source: cnaDescription
In the Linux kernel, the following vulnerability has been resolved: wifi: rtw89: pci: validate release report content before using for RTL8922DE The commit 957eda596c76 ("wifi: rtw89: pci: validate sequence number of TX release report") does validation on existing chips, which somehow a release report of SKB becomes malformed. As no clear cause found, add rules ahead for RTL8922DE to avoid crash if it happens.
Scores
CVSS v3
8.8
EPSS
0.0002
EPSS Percentile
5.3%
Attack Vector
ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Details
Status
published
Products (12)
Linux/Linux
< 6.18
Linux/Linux
110f3c11f440d78ef8a181f75456e24e428f69e4 - 3e8a88b5e8b3506d9c5e031a65ba65ce9a0683a3
Linux/Linux
110f3c11f440d78ef8a181f75456e24e428f69e4 - 5f93d611b33a05bd03d6843c8efe8cb6a1992620
Linux/Linux
110f3c11f440d78ef8a181f75456e24e428f69e4 - ebeaa3b24ba568ff8505165f954dba15cc53e4b3
Linux/Linux
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 3e8a88b5e8b3506d9c5e031a65ba65ce9a0683a3
Linux/Linux
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 5f93d611b33a05bd03d6843c8efe8cb6a1992620
Linux/Linux
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - ebeaa3b24ba568ff8505165f954dba15cc53e4b3
Linux/Linux
6.18
Linux/Linux
6.18.16 - 6.18.*
Linux/Linux
6.19.6 - 6.19.*
... and 2 more
Published
May 06, 2026
Tracked Since
May 06, 2026