Количество 5
Количество 5
CVE-2026-90374
(In the Linux kernel, the following vulnerability has been resolved: w ...)
CVE-2026-90374
In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: validate RX band_idx before dereferencing phys[] band_idx comes from a 2-bit descriptor field (0-3) and was used directly to index dev->mt76.phys[] (size __MT_MAX_BAND == 3) and dereference the result. A corrupt or reserved descriptor value could index out of bounds or hit a NULL phy on parts with fewer bands. Reject invalid band indices, mirroring mt7996_rx_get_wcid().
CVE-2026-90374
wifi: mt76: mt7996: validate RX band_idx before dereferencing phys[]
CVE-2026-90374
In the Linux kernel, the following vulnerability has been resolved: w ...
GHSA-xvmg-v5vr-xr53
In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: validate RX band_idx before dereferencing phys[] band_idx comes from a 2-bit descriptor field (0-3) and was used directly to index dev->mt76.phys[] (size __MT_MAX_BAND == 3) and dereference the result. A corrupt or reserved descriptor value could index out of bounds or hit a NULL phy on parts with fewer bands. Reject invalid band indices, mirroring mt7996_rx_get_wcid().
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-90374 (In the Linux kernel, the following vulnerability has been resolved: w ...) | 0% Низкий | 3 дня назад | ||
CVE-2026-90374 In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: validate RX band_idx before dereferencing phys[] band_idx comes from a 2-bit descriptor field (0-3) and was used directly to index dev->mt76.phys[] (size __MT_MAX_BAND == 3) and dereference the result. A corrupt or reserved descriptor value could index out of bounds or hit a NULL phy on parts with fewer bands. Reject invalid band indices, mirroring mt7996_rx_get_wcid(). | 0% Низкий | 4 дня назад | ||
CVE-2026-90374 wifi: mt76: mt7996: validate RX band_idx before dereferencing phys[] | 0% Низкий | 2 дня назад | ||
CVE-2026-90374 In the Linux kernel, the following vulnerability has been resolved: w ... | 0% Низкий | 4 дня назад | ||
GHSA-xvmg-v5vr-xr53 In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: validate RX band_idx before dereferencing phys[] band_idx comes from a 2-bit descriptor field (0-3) and was used directly to index dev->mt76.phys[] (size __MT_MAX_BAND == 3) and dereference the result. A corrupt or reserved descriptor value could index out of bounds or hit a NULL phy on parts with fewer bands. Reject invalid band indices, mirroring mt7996_rx_get_wcid(). | 0% Низкий | 4 дня назад |
Уязвимостей на страницу