CVE-2026-98346

Summary

In the Linux kernel, the following vulnerability has been resolved:

wifi: cfg80211: don't get the radio mask for netdev-less wdevs

cfg80211_calculate_bi_data() calls rdev_get_radio_mask() with wdev->netdev, which can be NULL and then crashes in mac80211.

To avoid that, invert the order of checks since wdev->netdev is always valid for beaconing interfaces.

Affected Software

VendorProductVersion RangeStatus
LinuxLinuxabb4cfe3661aa05426916b21164f88ca5a405a3a < 5b313159c970e945ee125ca87fad0d96ed913e55affected
LinuxLinuxabb4cfe3661aa05426916b21164f88ca5a405a3a < 693d777846d525b8b218bad97a1befa5d9bd4334affected
LinuxLinuxabb4cfe3661aa05426916b21164f88ca5a405a3a < 7166da84a7fe3553f9065782fd80299a37b150e5affected
LinuxLinuxabb4cfe3661aa05426916b21164f88ca5a405a3a < a7783e585360ee05dfe21d3173dbbe985c94f29eaffected
LinuxLinux6.11affected
LinuxLinux0 < 6.11unaffected
LinuxLinux6.12.112 <= 6.12.*unaffected
LinuxLinux6.18.54 <= 6.18.*unaffected
LinuxLinux7.2.8 <= 7.2.*unaffected
LinuxLinux7.3-rc4 <= *unaffected

Weaknesses

References