CVE-2026-74263

Summary

In the Linux kernel, the following vulnerability has been resolved:

net: wwan: t7xx: check skb_clone in control TX

t7xx_port_ctrl_tx() clones each skb fragment before passing it to the port transmit path. The clone is used immediately to set cloned->len, so an skb_clone() failure results in a NULL pointer dereference.

Check the clone before using it. If previous fragments were already queued, preserve the driver's existing partial-write behavior by returning the number of bytes submitted so far.

Affected Software

VendorProductVersion RangeStatus
LinuxLinux36bd28c1cb0dbf48645cfe43159907fb3253b33a < 7edd4db82f9429591de10be4c904c817f12ba029affected
LinuxLinux36bd28c1cb0dbf48645cfe43159907fb3253b33a < 112490467586146d323cb7230b1d72137e36900caffected
LinuxLinux36bd28c1cb0dbf48645cfe43159907fb3253b33a < f7aebaee2961bfcb86f282202d3dbd9b69db1a7caffected
LinuxLinux36bd28c1cb0dbf48645cfe43159907fb3253b33a < 4c1b25d85f4c9a0f85f3f8c39988ad266a3f3095affected
LinuxLinux36bd28c1cb0dbf48645cfe43159907fb3253b33a < 05f789fa90d95d5771230e78453cedff2486039daffected
LinuxLinux6.4affected
LinuxLinux0 < 6.4unaffected
LinuxLinux6.6.145 <= 6.6.*unaffected
LinuxLinux6.12.97 <= 6.12.*unaffected
LinuxLinux6.18.40 <= 6.18.*unaffected
LinuxLinux7.1.5 <= 7.1.*unaffected
LinuxLinux7.2 <= *unaffected

Weaknesses

References