Linux Kernel Vulnerability In WiFi Functionality by The Linux Foundation
CVE-2026-68407
Currently unrated
What is CVE-2026-68407?
In the Linux kernel, a vulnerability related to the nl80211 WiFi functionality has been identified, where RNR data is improperly managed in cases of MBSSID mismatch. Specifically, if the number of RNR entries is fewer than the MBSSID entries, the nl80211_parse_beacon() function is designed to reject the EMA RNR data. However, the rejected RNR allocation is not linked to the beacon data, leading to potential memory management issues. This could ultimately result in memory leaks or other unintended behavior within the kernel, thereby affecting system stability.
Affected Version(s)
Linux dbbb27e183b1568d5a907ace1cd144b0709ea52a
Linux dbbb27e183b1568d5a907ace1cd144b0709ea52a < 312c8b9d7836ef58e552619a8c19be08b04032bb
Linux dbbb27e183b1568d5a907ace1cd144b0709ea52a