CVE-2026-92497
N/A
N/A
Summary
In the Linux kernel, the following vulnerability has been resolved:
wifi: ath12k: Avoid buffer overread in ath12k_wmi_op_rx()
Currently, in ath12k_wmi_op_rx(), the firmware buffer is read without first verifying that the buffer has enough data to hold a header. This could result in a buffer overread.
Update the logic to verify the buffer contains at least enough data to hold a wmi_cmd_hdr before reading from the buffer.
Tested-on: WCN7850 hw2.0 PCI WLAN.HMT.1.1.c7-00108-QCAHMTSWPL_V1.0_V2.0_SILICONZ_UPSTREAM-3
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | d889913205cf7ebda905b1e62c5867ed4e39f6c2 < 9784faa6afd26693287e8e4569bdedee00212909 | affected |
| Linux | Linux | d889913205cf7ebda905b1e62c5867ed4e39f6c2 < 07659388110de004cbb753f3c7bc85e657e51f7a | affected |
| Linux | Linux | d889913205cf7ebda905b1e62c5867ed4e39f6c2 < 95d1bd1db9e9d8eccffc880166e01c4775115716 | affected |
| Linux | Linux | d889913205cf7ebda905b1e62c5867ed4e39f6c2 < 9e6ec0977f0b9c16fc20efea050e3eea8f66e34b | affected |
| Linux | Linux | d889913205cf7ebda905b1e62c5867ed4e39f6c2 < 7698656a2f7b045af5a6859766238cefea1b1945 | affected |
| Linux | Linux | 6.3 | affected |
| Linux | Linux | 0 < 6.3 | unaffected |
| Linux | Linux | 6.6.157 <= 6.6.* | unaffected |
| Linux | Linux | 6.12.110 <= 6.12.* | unaffected |
| Linux | Linux | 6.18.52 <= 6.18.* | unaffected |
| Linux | Linux | 7.2.6 <= 7.2.* | unaffected |
| Linux | Linux | 7.3-rc1 <= * | unaffected |
Weaknesses
References
- https://git.kernel.org/stable/c/9784faa6afd26693287e8e4569bdedee00212909
- https://git.kernel.org/stable/c/07659388110de004cbb753f3c7bc85e657e51f7a
- https://git.kernel.org/stable/c/95d1bd1db9e9d8eccffc880166e01c4775115716
- https://git.kernel.org/stable/c/9e6ec0977f0b9c16fc20efea050e3eea8f66e34b
- https://git.kernel.org/stable/c/7698656a2f7b045af5a6859766238cefea1b1945
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.