CVE-2026-68406

medium

Description

In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: validate PMSR FTM preamble range PMSR FTM request parsing accepts preamble values outside the enumerated nl80211 preamble range. Reject out-of-range values before using them in the parser capability bit test using the policy. [drop unnecessary check]

References

https://git.kernel.org/stable/c/cfbda103aeae61071a122a6fc2bfe98cffbd7165

https://git.kernel.org/stable/c/922d71fbaf99c1d5318151a0cb0a42ad448d07d9

https://git.kernel.org/stable/c/58320cb47df2accc7a20bb72c0150280732fa58f

https://git.kernel.org/stable/c/44ea65d779e2d23b2264fea6af2d0c666a3ec9fb

https://git.kernel.org/stable/c/36230936468f0ba4930e94aef496fc229d4bb951

Details

Source: Mitre, NVD

Published: 2026-08-10

Updated: 2026-08-10

Risk Information

CVSS v2

Base Score: 4.9

Vector: CVSS2#AV:L/AC:L/Au:N/C:N/I:N/A:C

Severity: Medium

CVSS v3

Base Score: 5.5

Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Severity: Medium