CVE-2026-90381
- EPSS 0.22%
- Veröffentlicht 17.09.2026 16:09:18
- Zuletzt bearbeitet 18.09.2026 18:17:56
In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: fix handling channel context with different bands in mt76_switch_vif_chanctx() When performing channel switches on different radios within a short timeframe, channel co...
CVE-2026-90379
- EPSS 0.24%
- Veröffentlicht 17.09.2026 16:09:17
- Zuletzt bearbeitet 18.09.2026 18:17:55
In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7921: Add PCIe AER handler support to prevent system crash When an AER error occurs and the bus is hung, the register reads return 0xFFFFFFFF, causing the DMA queue s...
CVE-2026-90380
- EPSS 0.31%
- Veröffentlicht 17.09.2026 16:09:17
- Zuletzt bearbeitet 18.09.2026 18:17:56
In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt792x: fix use-after-free in mt76_rx_poll_complete A use-after-free issue occurs in mt76_rx_poll_complete due to a race condition. The STA has already been removed, bu...
- EPSS 0.17%
- Veröffentlicht 17.09.2026 16:09:16
- Zuletzt bearbeitet 17.09.2026 17:17:36
In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: fix RX data queuing of RRO 3.0 For RRO 3.0, RX data released from a RRO data queue should be put to the indicator queue. The frames are processed and completed in the c...
- EPSS 0.17%
- Veröffentlicht 17.09.2026 16:09:16
- Zuletzt bearbeitet 17.09.2026 17:17:37
In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt792x: Fix memory leak in SDIO TX path When tx_prepare_skb() returns an error in the SDIO TX path, the skb is not freed, leading to a memory leak. This can occur when ...
- EPSS 0.2%
- Veröffentlicht 17.09.2026 16:09:15
- Zuletzt bearbeitet 17.09.2026 17:17:36
In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: fix MLD ID in MAC TXD and HIF TXP Problem: MCU command timeout while the firmware state is normal, and the firmware keeps showing the error log "ERROR!! NO PAUS...
- EPSS 0.2%
- Veröffentlicht 17.09.2026 16:09:14
- Zuletzt bearbeitet 17.09.2026 17:17:36
In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: validate RX band_idx before dereferencing phys[] band_idx comes from a 2-bit descriptor field (0-3) and was used directly to index dev->mt76.phys[] (size __MT_M...
- EPSS 0.17%
- Veröffentlicht 17.09.2026 16:09:14
- Zuletzt bearbeitet 17.09.2026 17:17:36
In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: fix non-AQL packet accounting for MLO stations __mt76_tx_queue_skb() overrides the wcid passed by the driver with sta->drv_priv, so the wcid might incorrectly be change...
- EPSS 0.2%
- Veröffentlicht 17.09.2026 16:09:13
- Zuletzt bearbeitet 17.09.2026 17:17:36
In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7915: clear wcid mask under mutex after RCU pointer clear mt7915_remove_interface() cleared the wcid mask bit with no lock held and before clearing the RCU wcid point...
CVE-2026-90371
- EPSS 0.32%
- Veröffentlicht 17.09.2026 16:09:12
- Zuletzt bearbeitet 18.09.2026 18:17:55
In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: fix RXDMAD_C buffer recycling race The RXDMAD_C buffers come from the RRO data queues' page pools, which are bound to a different NAPI, so the direct page-pool recycle ...