-

CVE-2026-90354

wifi: mt76: mt7915: fix double hif2 init on the non-WED path

In the Linux kernel, the following vulnerability has been resolved:

wifi: mt76: mt7915: fix double hif2 init on the non-WED path

mt7915_pci_init_hif2() was called unconditionally and again inside the
WED-inactive branch. The helper increments the global hif_idx, writes the
PCIe RECOG_ID register and takes a get_device() reference via
mt7915_pci_get_hif2(), while removal only drops one reference. On non-WED
dual-hif hardware this double-incremented hif_idx, wrote RECOG_ID twice and
leaked a device reference. Only the call inside the WED-inactive branch is
correct; drop the unconditional one. hif2 is already initialised to NULL.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt Linux
Default Statusunaffected
Version cacdd67812c6df824704ac078f1770188a485ff9
Version < eac18fadc791928379b179e54636494b92f8cf86
Status affected
Version cacdd67812c6df824704ac078f1770188a485ff9
Version < 927fe8c0eb8c10295bc0018c8faa4d91f8fe98c6
Status affected
Version cacdd67812c6df824704ac078f1770188a485ff9
Version < bd2e8f535ae35beb45a7fcc17ec9bbf8dc4db5fe
Status affected
Version cacdd67812c6df824704ac078f1770188a485ff9
Version < 249cbaa1873550689fab136b74982cbba74c4169
Status affected
Version cacdd67812c6df824704ac078f1770188a485ff9
Version < 29fbc5256c2d8448f084ff179d2e5092ecd1fc54
Status affected
Version cacdd67812c6df824704ac078f1770188a485ff9
Version < 3ae8ad277e2819a281b0e36b55633c8515c16ce7
Status affected
HerstellerLinux
≫
Produkt Linux
Default Statusaffected
Version 5.18
Status affected
Version 0
Version < 5.18
Status unaffected
Version <= 6.1.*
Version 6.1.188
Status unaffected
Version <= 6.6.*
Version 6.6.157
Status unaffected
Version <= 6.12.*
Version 6.12.110
Status unaffected
Version <= 6.18.*
Version 6.18.52
Status unaffected
Version <= 7.2.*
Version 7.2.6
Status unaffected
Version <= *
Version 7.3-rc1
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.17% 0.07
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://git.kernel.org/stable/c/eac18fadc791928379b179e54636494b92f8cf86
https://git.kernel.org/stable/c/927fe8c0eb8c10295bc0018c8faa4d91f8fe98c6
https://git.kernel.org/stable/c/bd2e8f535ae35beb45a7fcc17ec9bbf8dc4db5fe
https://git.kernel.org/stable/c/249cbaa1873550689fab136b74982cbba74c4169
https://git.kernel.org/stable/c/29fbc5256c2d8448f084ff179d2e5092ecd1fc54
https://git.kernel.org/stable/c/3ae8ad277e2819a281b0e36b55633c8515c16ce7