Linux Kernel WiFi Frame Injection Vulnerability Affecting Multiple Drivers
CVE-2026-98329

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
6 October 2026

What is CVE-2026-98329?

A vulnerability in the Linux kernel's networking stack, specifically within the mac80211 subsystem, allows for the possibility of injecting frames that exceed the permitted operational bandwidth. When using the monitor interface, these wider frames carry a radiotap field requesting a wider bandwidth than what is operationally supported. This can lead to unexpected behaviors or warnings within the hardware simulation environment (hwsim). To address this issue, frames that are identified as exceeding the acceptable bandwidth limits are now dropped entirely, preventing any of these invalid frames from being processed by the driver.

Affected Version(s)

Linux 646e76bb5daf4ca38438c69ffb72cccb605f3466

Linux 646e76bb5daf4ca38438c69ffb72cccb605f3466 < 73f48f7e16cadfc74f444ccd10c1d3ae253e2e27

Linux 646e76bb5daf4ca38438c69ffb72cccb605f3466

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.