5.5
CVE-2026-64155
- EPSS 0.12%
- Veröffentlicht 19.07.2026 15:40:43
- Zuletzt bearbeitet 17.08.2026 15:21:54
- CVE-Watchlists
- Unerledigt
wifi: ath11k: fix error path leaks in some WMI WOW calls
In the Linux kernel, the following vulnerability has been resolved: wifi: ath11k: fix error path leaks in some WMI WOW calls Fix two instances where we used to directly return the result of ath11k_wmi_cmd_send(...). Because we did not check the return value, we also did not free the skb in the error path.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Linux ≫ Linux Kernel Version >= 5.11 < 5.15.209
Linux ≫ Linux Kernel Version >= 5.16 < 6.1.175
Linux ≫ Linux Kernel Version >= 6.2 < 6.6.142
Linux ≫ Linux Kernel Version >= 6.7 < 6.12.92
Linux ≫ Linux Kernel Version >= 6.13 < 6.18.34
Linux ≫ Linux Kernel Version >= 6.19 < 7.0.11
Linux ≫ Linux Kernel Version7.1 Updaterc1
Linux ≫ Linux Kernel Version7.1 Updaterc2
Linux ≫ Linux Kernel Version7.1 Updaterc3
Linux ≫ Linux Kernel Version7.1 Updaterc4
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.12% | 0.025 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 5.5 | 1.8 | 3.6 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
|
CWE-401 Missing Release of Memory after Effective Lifetime
The product does not sufficiently track and release allocated memory after it has been used, making the memory unavailable for reallocation and reuse.
https://git.kernel.org/stable/c/d6c7b8d0dc22c0a8743435db8f42d98524b70df3
https://git.kernel.org/stable/c/cd43d587dd333517c806cd24696e6e1a26b9951e
https://git.kernel.org/stable/c/3d675896ea03aca631852a2a7e91e6cb8f664967
https://git.kernel.org/stable/c/008955b1348452de25bc19d6e0f0f673d4cb9a3c
https://git.kernel.org/stable/c/acde4692afcdaea6de3e2996ddfaeaa7ae6b0130
https://git.kernel.org/stable/c/d618d322b95c80d5ad7091f35a7193e4050dcc27
https://git.kernel.org/stable/c/55dda532bbc261aef495e403c8900c5e2ab5fa34