Linux Kernel Vulnerability in WiFi Management by rtw89 Vendor
CVE-2026-93281

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
24 September 2026

What is CVE-2026-93281?

A vulnerability within the Linux kernel affects the WiFi management capabilities via the rtw89 driver. The function responsible for checking HE (High Efficiency) extended capabilities erroneously accepts data lengths below 11 bytes for processing, leading to potential instability in WiFi operations. This glitch occurs in the 'rtw89_mac_check_he_obss_narrow_bw_ru_iter()' function, where data truncation or mishandling could disrupt device connectivity and performance. The identified flaw requires rectification to ensure that relevant data is not read unless it meets the minimum length requirements, thus safeguarding against possible exploitation and enhancing overall system reliability.

Affected Version(s)

Linux 8d540f9d29162e273797bef36686a010724f0f8a

Linux 8d540f9d29162e273797bef36686a010724f0f8a < 655c4401c18d735dbaf2cc172ff4f626b3a896a0

Linux 8d540f9d29162e273797bef36686a010724f0f8a

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.