CVE-2026-93065

medium

Description

In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: fix counter type in iwl_fwrt_dump_error_logs The loop counter 'count' was declared as u8 while num_pc is u32. If firmware advertises more than 255 PC entries the counter wraps back to zero and the loop never terminates potentially causing an infinite loop or reading past the allocated pc_data array. Change the declaration to u32 to match num_pc.

References

https://git.kernel.org/stable/c/9710b20d09d847e07e190087b0b529673d3f1fad

https://git.kernel.org/stable/c/8d8a526f3ec659194f846a2cb33844d9f6cb9995

https://git.kernel.org/stable/c/8d74cb5fbb7a0d825403a74d18386dc7b22426a9

https://git.kernel.org/stable/c/769e1910d41fdd01453cef4ae032a3c162f029f8

https://git.kernel.org/stable/c/71e67b4b59337b2f9f4fef976a27de2dad7aabf2

Details

Source: Mitre, NVD

Published: 2026-09-17

Updated: 2026-09-17

Risk Information

CVSS v2

Base Score: 4.9

Vector: CVSS2#AV:L/AC:L/Au:N/C:N/I:N/A:C

Severity: Medium

CVSS v3

Base Score: 5.5

Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Severity: Medium

EPSS

EPSS: 0.00168