CVE-2026-68412

Summary

In the Linux kernel, the following vulnerability has been resolved:

wifi: cfg80211: Fix an error handling path in cfg80211_wext_siwscan()

If the test against IEEE80211_MAX_SSID_LEN fails, then 'creq' leaks. Use the existing error handling path to fix it.

Affected Software

VendorProductVersion RangeStatus
LinuxLinux2a5193119269062608582418deba7af82844159a < e67dc2b8d5ac4bb804000b6732768a9ae678912faffected
LinuxLinux2a5193119269062608582418deba7af82844159a < 99d2e850c643e2c70fa165b722a1ad28347a8b3aaffected
LinuxLinux2a5193119269062608582418deba7af82844159a < c6659f66d4ee4841aafae5659d2ef5e4c5c63cb6affected
LinuxLinux2.6.30affected
LinuxLinux0 < 2.6.30unaffected
LinuxLinux6.18.42 <= 6.18.*unaffected
LinuxLinux7.1.6 <= 7.1.*unaffected
LinuxLinux7.2-rc4 <= *unaffected

Weaknesses

References