Linux Kernel Vulnerability in mac80211 Wifi Scanning Process
CVE-2026-98337

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
6 October 2026

What is CVE-2026-98337?

A vulnerability exists within the Linux kernel's mac80211 module that can lead to improper handling of off-channel requests (ROCs) during scanning operations. When a scan is initiated, the ROC list needs to be cleared; however, if a new ROC is added while the scan is in progress, it can trigger a warning about the state of operations. This issue arises from the failure to synchronize the start of new off-channel requests with ongoing scan activities, potentially leading to race conditions that could affect network stability. Addressing this vulnerability requires careful implementation to ensure that ROC operations do not overlap improperly with scanning tasks.

Affected Version(s)

Linux aaa016ccd5df89d73483d0d51ee1f692978ccc35 < 5dc8ec2f8d1d62914661577c23ec151f5c9734a4

Linux aaa016ccd5df89d73483d0d51ee1f692978ccc35 < 81baab8b645ec532bad2b7a8464191c720ef8fd9

Linux aaa016ccd5df89d73483d0d51ee1f692978ccc35 < 58b806f699052c572dec6cab2c376f884f27e98f

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.