-
CVE-2026-93149
- EPSS 0.21%
- Veröffentlicht 17.09.2026 16:11:46
- Zuletzt bearbeitet 17.09.2026 17:18:10
- Erkennungen
wifi: mac80211_hwsim: avoid NULL skb in stop queue drain
In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211_hwsim: avoid NULL skb in stop queue drain mac80211_hwsim_stop() drops any frames left in data->pending. The loop currently checks skb_queue_empty() and then dequeues separately. That split is racy with TX status handling, which can remove a pending frame under the queue lock. If the last entry is removed after the empty check, skb_dequeue() returns NULL and the stop path passes that NULL skb to ieee80211_free_txskb(). Use skb_dequeue() as the loop condition instead. The dequeue result is the object that stop owns and frees, and a concurrent status completion that empties the queue simply makes the loop terminate.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt
Linux
Default Statusunaffected
Version
bd18de517923903a177508fc8813f44e717b1c00
Version <
d131027054a8dd922dda01fe8d381abe5af4970b
Status
affected
Version
bd18de517923903a177508fc8813f44e717b1c00
Version <
c40ba47f2ba1951cb32ea048667ed014d36a5749
Status
affected
Version
bd18de517923903a177508fc8813f44e717b1c00
Version <
2817431a61557f46dc63077b7cc126bc906c242e
Status
affected
Version
bd18de517923903a177508fc8813f44e717b1c00
Version <
e7fccad2c8e6ef6bbafe509c95869d161d0f466b
Status
affected
Version
bd18de517923903a177508fc8813f44e717b1c00
Version <
1c2a4ab6efa26415dd131b8c222e7893fda03435
Status
affected
Version
bd18de517923903a177508fc8813f44e717b1c00
Version <
158438cd6ad69d6dd7d871582c38baf22169fede
Status
affected
Version
78bf3c6131488b00386acd9aff1ea4e6c44fa38e
Status
affected
Version
a9028333001f793b2724e8be42fce3336de2cf1c
Status
affected
Version
7019c9f385b264a2d6f685028268422d55087e37
Status
affected
Version
5.4.129
Version <
5.5
Status
affected
Version
5.10.47
Version <
5.11
Status
affected
Version
5.12.14
Version <
5.13
Status
affected
HerstellerLinux
≫
Produkt
Linux
Default Statusaffected
Version
5.13
Status
affected
Version
0
Version <
5.13
Status
unaffected
Version <=
6.1.*
Version
6.1.188
Status
unaffected
Version <=
6.6.*
Version
6.6.157
Status
unaffected
Version <=
6.12.*
Version
6.12.110
Status
unaffected
Version <=
6.18.*
Version
6.18.52
Status
unaffected
Version <=
7.2.*
Version
7.2.6
Status
unaffected
Version <=
*
Version
7.3-rc1
Status
unaffected
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.21% | 0.109 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|
https://git.kernel.org/stable/c/d131027054a8dd922dda01fe8d381abe5af4970b
https://git.kernel.org/stable/c/c40ba47f2ba1951cb32ea048667ed014d36a5749
https://git.kernel.org/stable/c/2817431a61557f46dc63077b7cc126bc906c242e
https://git.kernel.org/stable/c/e7fccad2c8e6ef6bbafe509c95869d161d0f466b
https://git.kernel.org/stable/c/1c2a4ab6efa26415dd131b8c222e7893fda03435
https://git.kernel.org/stable/c/158438cd6ad69d6dd7d871582c38baf22169fede