Linux Kernel Wireless Driver Vulnerability in mt7925 by Linux Foundation
CVE-2026-63832
What is CVE-2026-63832?
A vulnerability in the Linux kernel's mt76 wireless driver introduced potential instability when handling wireless client association through the mt7925 chipset. Specifically, the issue lies within the mt76_sta_add function where an improper publication check for the wireless client identifier (wcid) could lead to corruption of the poll list. This corruption was observed when devices disconnected from access points, potentially resulting in compromised network performance and stability. The vulnerability necessitated the addition of a conditional check to ensure the integrity of the wcid's poll_list and to prevent reinitialization when a client disconnects from an access point.
Affected Version(s)
Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 3c499851753a24d2e148d4e9ca51764c0c51554e
Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 55e014aaec650ede08b693ba59c8d0443f13f11c
Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 20b126920a259df4d7dcae19fcfe2c57a74d6b2e