Out-of-Bounds Read Vulnerability in Morse Micro HaLowLink 2 Software
CVE-2026-7764
What is CVE-2026-7764?
The HaLow Wi-Fi kernel driver in Morse Micro's HaLowLink 2 software is susceptible to an out-of-bounds read vulnerability. This issue stems from inadequate validation of the length of Vendor Information Elements in 802.11ah beacon or probe response frames. An unauthenticated attacker within radio range can exploit this flaw to disclose sensitive kernel heap memory or trigger a Denial of Service through a crafted probe response. The vulnerability arises as the function responsible for processing vendor information elements fails to enforce proper structure size checks, allowing attackers to supply malformed data that leads to heap out-of-bounds reads. This vulnerability does not require any form of authentication or user interaction, posing a significant risk to impacted installations.
Affected Version(s)
HaLowLink 2 0 < 2.11.12
