CVE-2026-93065

Summary

In the Linux kernel, the following vulnerability has been resolved:

wifi: iwlwifi: fix counter type in iwl_fwrt_dump_error_logs

The loop counter 'count' was declared as u8 while num_pc is u32. If firmware advertises more than 255 PC entries the counter wraps back to zero and the loop never terminates potentially causing an infinite loop or reading past the allocated pc_data array.

Change the declaration to u32 to match num_pc.

Affected Software

VendorProductVersion RangeStatus
LinuxLinux2b69d242e29b891b11f1190201f4a08abb0c8342 < 8d74cb5fbb7a0d825403a74d18386dc7b22426a9affected
LinuxLinux2b69d242e29b891b11f1190201f4a08abb0c8342 < 9710b20d09d847e07e190087b0b529673d3f1fadaffected
LinuxLinux2b69d242e29b891b11f1190201f4a08abb0c8342 < 8d8a526f3ec659194f846a2cb33844d9f6cb9995affected
LinuxLinux2b69d242e29b891b11f1190201f4a08abb0c8342 < 769e1910d41fdd01453cef4ae032a3c162f029f8affected
LinuxLinux2b69d242e29b891b11f1190201f4a08abb0c8342 < 71e67b4b59337b2f9f4fef976a27de2dad7aabf2affected
LinuxLinuxff800b0c4797c6e97f09fcd93ca8b83040d77fb4affected
LinuxLinux6.4.4 < 6.5affected
LinuxLinux6.5affected
LinuxLinux0 < 6.5unaffected
LinuxLinux6.6.157 <= 6.6.*unaffected
LinuxLinux6.12.110 <= 6.12.*unaffected
LinuxLinux6.18.52 <= 6.18.*unaffected
LinuxLinux7.2.6 <= 7.2.*unaffected
LinuxLinux7.3-rc1 <= *unaffected

Weaknesses

References