CVE-2026-23315

HIGH EPSS 2.6%
Published Mar 25, 20263mo ago · Modified Jun 17, 20261w ago
7.1 CVSS 3.1
High
Find Similar
Published Mar 25, 2026 3mo ago
Last Modified Jun 17, 2026 1w ago

Description

In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: Fix possible oob access in mt76_connac2_mac_write_txwi_80211() Check frame length before accessing the mgmt fields in mt76_connac2_mac_write_txwi_80211 in order to avoid a possible oob access. [fix check to also cover mgmt->u.action.u.addba_req.capab, correct Fixes tag]

CVSS Details

Base Score
7.1
Exploitability
1.8
Impact
5.2
Vector string
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
Attack Vector Local
Attack Complexity Low
Privileges Required Low
User Interaction None
Scope Unchanged
Confidentiality High
Integrity None
Availability High

Threat Intelligence

EPSS Exploit Probability
2.6% percentile
Exploit & Patch Status
No Known Exploit
Patch Available

Weaknesses 1

CWE-125 Out-of-bounds Read Memory Safety

Affected Products 13

VendorProductVersionRange
linuxlinux_kernel*≥5.10.1  –  <6.1.167
linuxlinux_kernel*≥6.2  –  <6.6.130
linuxlinux_kernel*≥6.7  –  <6.12.77
linuxlinux_kernel*≥6.13  –  <6.18.17
linuxlinux_kernel*≥6.19  –  <6.19.7
linuxlinux_kernel5.10any
linuxlinux_kernel7.0any
linuxlinux_kernel7.0any
linuxlinux_kernel7.0any
linuxlinux_kernel7.0any
linuxlinux_kernel7.0any
linuxlinux_kernel7.0any
linuxlinux_kernel7.0any

References 6

  • git.kernel.org https://git.kernel.org/stable/c/0fb3b94a9431a3800717e5c3b6fa2e1045a15029
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/4e10a730d1b511ff49723371ed6d694dd1b2c785
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/7ae7b093b7dba9548a3bc4766b9364b97db4732d
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/7b692dff8df0ba5feb8df00f27d906d6eb1fe627
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/84419556359bc96d3fe1623d47a64c86542566cc
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/9612d91f617231e03c49cb9b0c02f975a3b4f51f
    Patch

Remediation

  • git.kernel.org https://git.kernel.org/stable/c/0fb3b94a9431a3800717e5c3b6fa2e1045a15029
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/4e10a730d1b511ff49723371ed6d694dd1b2c785
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/7ae7b093b7dba9548a3bc4766b9364b97db4732d
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/7b692dff8df0ba5feb8df00f27d906d6eb1fe627
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/84419556359bc96d3fe1623d47a64c86542566cc
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/9612d91f617231e03c49cb9b0c02f975a3b4f51f
    Patch