Linux Kernel Vulnerability In WiFi Functionality by The Linux Foundation
CVE-2026-68407

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
10 August 2026

What is CVE-2026-68407?

In the Linux kernel, a vulnerability related to the nl80211 WiFi functionality has been identified, where RNR data is improperly managed in cases of MBSSID mismatch. Specifically, if the number of RNR entries is fewer than the MBSSID entries, the nl80211_parse_beacon() function is designed to reject the EMA RNR data. However, the rejected RNR allocation is not linked to the beacon data, leading to potential memory management issues. This could ultimately result in memory leaks or other unintended behavior within the kernel, thereby affecting system stability.

Affected Version(s)

Linux dbbb27e183b1568d5a907ace1cd144b0709ea52a

Linux dbbb27e183b1568d5a907ace1cd144b0709ea52a < 312c8b9d7836ef58e552619a8c19be08b04032bb

Linux dbbb27e183b1568d5a907ace1cd144b0709ea52a

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.