Linux Kernel Vulnerability in rtl8723bs Driver Affecting Management Frame Handling
CVE-2026-100076
What is CVE-2026-100076?
In the Linux kernel, a resource management vulnerability has been identified within the rtl8723bs driver, affecting the handling of management frames. Specifically, certain error paths in the functions issue_beacon(), issue_probersp(), and issue_asocrsp() prevent proper memory management by failing to release allocated management frames and buffers upon encountering errors. This oversight leads to orphaned resources that are not returned to the management-TX pool, progressively consuming available resources and potentially exhausting the pool. As a result, the interface may become incapable of sending critical management frames such as beacons or probe responses, impairing wireless communication functionality. Addressing this vulnerability involves ensuring that memory is correctly freed on error paths to maintain resource availability.
Affected Version(s)
Linux 554c0a3abf216c991c5ebddcdb2c08689ecd290b < 6c9f6a3b9fdd31a0836b681053155b5997c0156e
Linux 554c0a3abf216c991c5ebddcdb2c08689ecd290b
Linux 554c0a3abf216c991c5ebddcdb2c08689ecd290b < 41b8209376dffbd7b0b85c8bc4697d9166ac62ef