-

CVE-2026-93149

wifi: mac80211_hwsim: avoid NULL skb in stop queue drain

In the Linux kernel, the following vulnerability has been resolved:

wifi: mac80211_hwsim: avoid NULL skb in stop queue drain

mac80211_hwsim_stop() drops any frames left in data->pending. The loop
currently checks skb_queue_empty() and then dequeues separately.

That split is racy with TX status handling, which can remove a pending
frame under the queue lock. If the last entry is removed after the empty
check, skb_dequeue() returns NULL and the stop path passes that NULL skb
to ieee80211_free_txskb().

Use skb_dequeue() as the loop condition instead. The dequeue result is the
object that stop owns and frees, and a concurrent status completion that
empties the queue simply makes the loop terminate.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt Linux
Default Statusunaffected
Version bd18de517923903a177508fc8813f44e717b1c00
Version < d131027054a8dd922dda01fe8d381abe5af4970b
Status affected
Version bd18de517923903a177508fc8813f44e717b1c00
Version < c40ba47f2ba1951cb32ea048667ed014d36a5749
Status affected
Version bd18de517923903a177508fc8813f44e717b1c00
Version < 2817431a61557f46dc63077b7cc126bc906c242e
Status affected
Version bd18de517923903a177508fc8813f44e717b1c00
Version < e7fccad2c8e6ef6bbafe509c95869d161d0f466b
Status affected
Version bd18de517923903a177508fc8813f44e717b1c00
Version < 1c2a4ab6efa26415dd131b8c222e7893fda03435
Status affected
Version bd18de517923903a177508fc8813f44e717b1c00
Version < 158438cd6ad69d6dd7d871582c38baf22169fede
Status affected
Version 78bf3c6131488b00386acd9aff1ea4e6c44fa38e
Status affected
Version a9028333001f793b2724e8be42fce3336de2cf1c
Status affected
Version 7019c9f385b264a2d6f685028268422d55087e37
Status affected
Version 5.4.129
Version < 5.5
Status affected
Version 5.10.47
Version < 5.11
Status affected
Version 5.12.14
Version < 5.13
Status affected
HerstellerLinux
≫
Produkt Linux
Default Statusaffected
Version 5.13
Status affected
Version 0
Version < 5.13
Status unaffected
Version <= 6.1.*
Version 6.1.188
Status unaffected
Version <= 6.6.*
Version 6.6.157
Status unaffected
Version <= 6.12.*
Version 6.12.110
Status unaffected
Version <= 6.18.*
Version 6.18.52
Status unaffected
Version <= 7.2.*
Version 7.2.6
Status unaffected
Version <= *
Version 7.3-rc1
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.21% 0.109
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://git.kernel.org/stable/c/d131027054a8dd922dda01fe8d381abe5af4970b
https://git.kernel.org/stable/c/c40ba47f2ba1951cb32ea048667ed014d36a5749
https://git.kernel.org/stable/c/2817431a61557f46dc63077b7cc126bc906c242e
https://git.kernel.org/stable/c/e7fccad2c8e6ef6bbafe509c95869d161d0f466b
https://git.kernel.org/stable/c/1c2a4ab6efa26415dd131b8c222e7893fda03435
https://git.kernel.org/stable/c/158438cd6ad69d6dd7d871582c38baf22169fede