Linux Kernel Wi-Fi Configuration Grouping Vulnerability
CVE-2026-98340

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
6 October 2026

What is CVE-2026-98340?

In the Linux kernel, a vulnerability exists in the Wi-Fi configuration layer (cfg80211) that affects how groups of Basic Service Sets (BSS) with hidden service set identifiers (SSID) are handled. When a probe response is received for an unknown BSS, the kernel attempts to group it based on the existing entries, potentially leading to incorrect groupings if entries lack beacon elements. This flaw could result in unauthorized access or mismanagement of wireless configurations, underscoring the importance of patching and securing network communications.

Affected Version(s)

Linux 4593c4cbe1c96b3995727dc42f6aa103f4ff5afc < 4cd6a518ce7527284bbc9baab5fa2453a7d477c2

Linux 4593c4cbe1c96b3995727dc42f6aa103f4ff5afc < 74ed0d992f392c75e1969415527e06df3f7a4034

Linux 4593c4cbe1c96b3995727dc42f6aa103f4ff5afc < 3658093df69849daf4f813a8f087f358e13be203

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.