Out-of-bounds Access Vulnerability in Linux Kernel's ath12k Component
CVE-2025-39761

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
11 September 2025

What is CVE-2025-39761?

A vulnerability exists in the ath12k component of the Linux kernel where the Transmission Identifier (TID) is not decremented prior to peer cleanup during error handling in the RX peer fragment setup. This oversight can result in potential out-of-bounds access within the peer's rx_tid array, creating significant security risks. Proper decrementing of the TID is essential to ensure safe cleanup and prevent exploitation stemming from failed RX peer fragment setups. This issue was identified during a routine code review and has undergone compile testing.

Affected Version(s)

Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2

Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 7c3e99fd4a66a5ac9c7dd32db07359666efe0002

Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.