Linux Kernel Vulnerability in Wi-Fi Mesh Functionality
CVE-2026-98327

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
6 October 2026

What is CVE-2026-98327?

A vulnerability in the Linux kernel's Wi-Fi mesh functionality can lead to a memory leak when a mesh network is exited during an active channel switch. Specifically, the CSA (Channel Switch Announcement) state is not appropriately reset, causing potential issues with state management and memory allocation. This can result in improper handling of the CSA state in ieee80211_mesh_csa_beacon() and incomplete cleanup during ieee80211_mesh_finish_csa(). To mitigate this issue, it is recommended to refactor the relevant code to properly reset the CSA state upon stopping the mesh operation, thereby preventing state leakage and ensuring proper memory management.

Affected Version(s)

Linux b8456a14e9d2770846fcf74de18ff95b676149a3

Linux b8456a14e9d2770846fcf74de18ff95b676149a3

Linux b8456a14e9d2770846fcf74de18ff95b676149a3

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.