Use-After-Free Vulnerability in Linux Kernel's mac80211 Wi-Fi Module
CVE-2026-64574
What is CVE-2026-64574?
A use-after-free vulnerability exists in the mac80211 component of the Linux kernel. The issue arises when new links are added through the ieee80211_vif_update_links() function, which fails to properly clean up resources when an error occurs. The improper handling allows for dangling pointers and memory access violations, leading to potential exploitation. If the drv_change_vif_links() function fails during runtime (common with MLO drivers), it does not adequately dismantle allocated link containers, leaving debugfs entries that point to freed memory. This flaw can result in significant security vulnerabilities, as attackers could potentially read from previously allocated memory, leading to unexpected behaviors, crashes, or data leaks.
Affected Version(s)
Linux 170cd6a66d9a164180eb4dc72d50afa6ce1ce566 < 329589417214d3b7221432e5b266ed2bba7ff674
Linux 170cd6a66d9a164180eb4dc72d50afa6ce1ce566
Linux 170cd6a66d9a164180eb4dc72d50afa6ce1ce566 < 0f7eaeb950adb77f71beb546e5ab30f90b41fe6f