5.5

CVE-2026-64155

wifi: ath11k: fix error path leaks in some WMI WOW calls

In the Linux kernel, the following vulnerability has been resolved:

wifi: ath11k: fix error path leaks in some WMI WOW calls

Fix two instances where we used to directly return the result of
ath11k_wmi_cmd_send(...). Because we did not check the return value, we
also did not free the skb in the error path.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
LinuxLinux Kernel Version >= 5.11 < 5.15.209
LinuxLinux Kernel Version >= 5.16 < 6.1.175
LinuxLinux Kernel Version >= 6.2 < 6.6.142
LinuxLinux Kernel Version >= 6.7 < 6.12.92
LinuxLinux Kernel Version >= 6.13 < 6.18.34
LinuxLinux Kernel Version >= 6.19 < 7.0.11
LinuxLinux Kernel Version7.1 Updaterc1
LinuxLinux Kernel Version7.1 Updaterc2
LinuxLinux Kernel Version7.1 Updaterc3
LinuxLinux Kernel Version7.1 Updaterc4
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.12% 0.025
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 5.5 1.8 3.6
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
CWE-401 Missing Release of Memory after Effective Lifetime

The product does not sufficiently track and release allocated memory after it has been used, making the memory unavailable for reallocation and reuse.

https://git.kernel.org/stable/c/d6c7b8d0dc22c0a8743435db8f42d98524b70df3
Patch
https://git.kernel.org/stable/c/cd43d587dd333517c806cd24696e6e1a26b9951e
Patch
https://git.kernel.org/stable/c/3d675896ea03aca631852a2a7e91e6cb8f664967
Patch
https://git.kernel.org/stable/c/008955b1348452de25bc19d6e0f0f673d4cb9a3c
Patch
https://git.kernel.org/stable/c/acde4692afcdaea6de3e2996ddfaeaa7ae6b0130
Patch
https://git.kernel.org/stable/c/d618d322b95c80d5ad7091f35a7193e4050dcc27
Patch
https://git.kernel.org/stable/c/55dda532bbc261aef495e403c8900c5e2ab5fa34
Patch