CVE-2026-90372
- EPSS 0.36%
- Veröffentlicht 17.09.2026 16:09:12
- Zuletzt bearbeitet 18.09.2026 18:17:55
In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7915: avoid nss underflow in mt7915_mcu_get_sta_nss If a peer's VHT/HE MCS map has no supported spatial stream (all fields 0x3), the loop exits with nss == 0 and the ...
- EPSS 0.2%
- Veröffentlicht 17.09.2026 16:09:11
- Zuletzt bearbeitet 17.09.2026 17:17:36
In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: bound TLV walk in mt7996_mcu_get_chip_config The response TLV loop advanced by tlv->len without a minimum, so a theoretical firmware response containing a zero-...
- EPSS 0.2%
- Veröffentlicht 17.09.2026 16:09:10
- Zuletzt bearbeitet 17.09.2026 17:17:35
In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7915: unwind state on add_interface failure When mt76_wcid_alloc() fails, mt7915_add_interface() returned without clearing the vif_mask/omac_mask bits it had already ...
- EPSS 0.16%
- Veröffentlicht 17.09.2026 16:09:10
- Zuletzt bearbeitet 17.09.2026 17:17:36
In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: fix out-of-bounds access in mmio copy helpers mt76_mmio_write_copy() and mt76_mmio_read_copy() iterate up to ALIGN(len, 4), so a length that is not a multiple of four r...
CVE-2026-90367
- EPSS 0.24%
- Veröffentlicht 17.09.2026 16:09:09
- Zuletzt bearbeitet 18.09.2026 18:17:55
In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: hold dev->mt76.mutex while disabling tx worker in SER mt7996_mac_reset_work() parked the tx worker and disabled the RX/TX NAPIs before taking dev->mt76.mutex. m...
- EPSS 0.16%
- Veröffentlicht 17.09.2026 16:09:08
- Zuletzt bearbeitet 17.09.2026 17:17:35
In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: cancel reset and rc work on device unregister Both drivers cancelled dump_work on unregister but left reset_work and rc_work to be flushed only by destroy_workqueue() i...
- EPSS 0.17%
- Veröffentlicht 17.09.2026 16:09:08
- Zuletzt bearbeitet 17.09.2026 17:17:35
In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: reserve space for the CSA-abort countdown TLV When a CSA countdown is active, mt7996_mcu_beacon_cntdwn() emits two bss_bcn_cntdwn_tlv entries (the CSA countdown...
- EPSS 0.2%
- Veröffentlicht 17.09.2026 16:09:07
- Zuletzt bearbeitet 17.09.2026 17:17:35
In the Linux kernel, the following vulnerability has been resolved: ACPI: processor: Unregister cpufreq notifier on init failure acpi_processor_driver_init() registers the cpufreq policy notifier before registering the ACPI processor driver and set...
- EPSS 0.21%
- Veröffentlicht 17.09.2026 16:09:06
- Zuletzt bearbeitet 17.09.2026 17:17:35
In the Linux kernel, the following vulnerability has been resolved: drm/msm/dsi: Drop dev_pm_opp_set_rate(0) dev_pm_opp_set_rate(0) removes the vote specified in required-opps but does not actually park the clock, making it run without the necessar...
- EPSS 0.2%
- Veröffentlicht 17.09.2026 16:09:06
- Zuletzt bearbeitet 17.09.2026 17:17:35
In the Linux kernel, the following vulnerability has been resolved: drm/msm: don't tear down KMS twice when KMS init fails When priv->kms_init() (mdp4_kms_init() / mdp5_kms_init()) fails partway through, both display drivers already tear their KMS ...