Infinite Loop Vulnerability in Linux Kernel Wi-Fi Scanning
CVE-2026-74411
What is CVE-2026-74411?
This vulnerability in the Linux kernel's Wi-Fi driver (rtw89) can lead to a soft lockup during scanning on the 6GHz band. Affected systems may experience a significant performance degradation, where the CPU could remain stuck in the scanning function for over 20 seconds, ultimately causing a system panic. The faulty data type handling for the scan index triggers this infinite loop condition. Proper mitigation is necessary to avoid operational disruptions in environments relying on stable Wi-Fi connections.
Affected Version(s)
Linux c6aa9a9c47252ac7b07ed6d10459027e2f2a2de0 < 966fbed4b4463fbcb49c5becf3f86eae776861bd
Linux c6aa9a9c47252ac7b07ed6d10459027e2f2a2de0 < 05d46e30303275f21f13c951166d39c85df976d4
Linux c6aa9a9c47252ac7b07ed6d10459027e2f2a2de0 < 7a1ab5fdcae896e20ca6d68fa0fbd2816cb7471f