CVE-2026-93281: falha em Linux
wifi: rtw89: fix HE extended capability length check
Publicada em
3Vexday Risk Score
Sem sinal de exploração. Nenhum artefato público de exploração conhecido até agora.
ssvc Trackepss 0.2%
probabilidade de exploração
0.2%top 92% das CVEs
exploração observada
nãonenhuma fonte reporta
In the Linux kernel, the following vulnerability has been resolved:
wifi: rtw89: fix HE extended capability length check
rtw89_mac_check_he_obss_narrow_bw_ru_iter() reads extended capability
byte 10, but rejects only datalen values below 10. Byte 10 requires at
least 11 bytes.
Require datalen >= 11 before reading data[10].
Produtos afetados
Linux · LinuxCVEs relacionadas — Linux
No mesmo produto, das mais perigosas para as menos.
CVE-2024-53197HIGHALSA: usb-audio: Fix potential out-of-bound accesses for Extigy and Mbox devicesEPSS 4.1%KEVCVE-2026-31431HIGHcrypto: algif_aead - Revert to operating out-of-placeEPSS 3.4%KEVCVE-2024-53104HIGHmedia: uvcvideo: Skip parsing frames of type UVC_VS_UNDEFINED in uvc_parse_formatEPSS 3.4%KEVCVE-2025-39682CRITICALtls: fix handling of zero-length records on the rx_listEPSS 2.9%KEVCVE-2024-36971HIGHnet: fix __dst_negative_advice() raceEPSS 2.7%KEVCVE-2024-53150HIGHALSA: usb-audio: Fix out of bounds reads when finding clock sourcesEPSS 1.4%KEV
Referências
https://git.kernel.org/stable/c/2aba608a86e9b099c9af2ea70b620552dee2b628https://git.kernel.org/stable/c/655c4401c18d735dbaf2cc172ff4f626b3a896a0https://git.kernel.org/stable/c/bddbd1de765bf6ddc0473ad683910eb3a2a92a43https://git.kernel.org/stable/c/eddf53f1edb0cf7f302bd15cdb47cca90948c205https://git.kernel.org/stable/c/f132fc01b359a0f7d81fe13d769ea4e7c4baa66ehttps://git.kernel.org/stable/c/f2a01deff7d0d5cc3dcbf2358dac113979303c8e