CVE-2026-23315

high

Description

In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: Fix possible oob access in mt76_connac2_mac_write_txwi_80211() Check frame length before accessing the mgmt fields in mt76_connac2_mac_write_txwi_80211 in order to avoid a possible oob access. [fix check to also cover mgmt->u.action.u.addba_req.capab, correct Fixes tag]

References

https://git.kernel.org/stable/c/9612d91f617231e03c49cb9b0c02f975a3b4f51f

https://git.kernel.org/stable/c/84419556359bc96d3fe1623d47a64c86542566cc

https://git.kernel.org/stable/c/7b692dff8df0ba5feb8df00f27d906d6eb1fe627

https://git.kernel.org/stable/c/7ae7b093b7dba9548a3bc4766b9364b97db4732d

https://git.kernel.org/stable/c/4e10a730d1b511ff49723371ed6d694dd1b2c785

https://git.kernel.org/stable/c/0fb3b94a9431a3800717e5c3b6fa2e1045a15029

Details

Source: Mitre, NVD

Published: 2026-03-25

Updated: 2026-03-25

Risk Information

CVSS v2

Base Score: 6.6

Vector: CVSS2#AV:L/AC:L/Au:N/C:C/I:N/A:C

Severity: Medium

CVSS v3

Base Score: 7.1

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H

Severity: High

EPSS

EPSS: 0.00024