-

CVE-2026-97432

wifi: iwlwifi: mvm: fix P2P-Device binding handling

In the Linux kernel, the following vulnerability has been resolved:

wifi: iwlwifi: mvm: fix P2P-Device binding handling

Our binding handling for P2P-Device can run into the following
scenario, as observed by our testing:

 - a station interface is connected on some channel
 - the P2P-Device does a remain-on-channel (ROC) on that channel
 - the ROC ends, and the P2P-Device is removed from the binding,
   but the phy_ctxt pointer is left around as a PHY cache so we
   don't need to recalibrate to the channel again and again in
   case it's not shared
 - a binding update by the station interface, even a removal,
   will re-add the P2P-Device to the binding
 - the P2P-Device is removed, which removes the PHY context, but
   it's still in the binding so the firmware crashes

Since the P2P device is removed from the binding and only re-
added by unrelated code, but we want to keep the phy_ctxt around
as a cache for future ROC usage, fix it by adding a boolean that
indicates whether or not the P2P-Device should be added to the
binding, and handle that in the binding iterator. That way, the
station interface cannot re-add the P2P-Device to the binding
when that isn't active.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt Linux
Default Statusunaffected
Version 84ef7cbe90e9e54c71c1da4e645ba34e1b33da77
Version < 7be2fc679c8f657868988e41c0bb15bf5a454620
Status affected
Version 84ef7cbe90e9e54c71c1da4e645ba34e1b33da77
Version < b74e377cad9271950c57472867c469e4b5b2ff0c
Status affected
Version 8ddf2212cfa5d9ef4fd289ce0d9dda728f2160b8
Status affected
Version 64c277f6329818db3124c9759cb9acf0f6070a54
Status affected
Version 6.5.12
Version < 6.6
Status affected
Version 6.6.2
Version < 6.7
Status affected
HerstellerLinux
≫
Produkt Linux
Default Statusaffected
Version 6.7
Status affected
Version 0
Version < 6.7
Status unaffected
Version <= 6.18.*
Version 6.18.53
Status unaffected
Version <= *
Version 7.2
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.16% 0.04
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://git.kernel.org/stable/c/7be2fc679c8f657868988e41c0bb15bf5a454620
https://git.kernel.org/stable/c/b74e377cad9271950c57472867c469e4b5b2ff0c