๐Ÿ” CVE Alert

CVE-2026-90366

UNKNOWN 0.0

wifi: mt76: mt7996: reserve space for the CSA-abort countdown TLV

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: reserve space for the CSA-abort countdown TLV When a CSA countdown is active, mt7996_mcu_beacon_cntdwn() emits two bss_bcn_cntdwn_tlv entries (the CSA countdown and the CCA-abort BCC), but MT7996_BEACON_UPDATE_SIZE only reserved one. With MBSSID enabled and a near-maximum beacon template the extra 8 bytes could push the offload command past MT7996_MAX_BSS_OFFLOAD_SIZE and trigger skb_over_panic(). Reserve room for both countdown TLVs.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Sep 17, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
98686cd21624c75a043e96812beadddf4f6f48e5 < 1d348f96623ec20d700af7d4dfc00a74da6238ac 98686cd21624c75a043e96812beadddf4f6f48e5 < bc1d694a1ffe0062c3adf0db1d64ad54454398ec 98686cd21624c75a043e96812beadddf4f6f48e5 < 45d8896e4cffffb2c6554ccbec6efe7a0d53166f 98686cd21624c75a043e96812beadddf4f6f48e5 < 1a51aff0e048dc5b8252d65808b79939c942d6ec 98686cd21624c75a043e96812beadddf4f6f48e5 < 50c66bab321140c49aa2ed779a3ec9d2f085b458
Linux / Linux
6.2

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/1d348f96623ec20d700af7d4dfc00a74da6238ac git.kernel.org: https://git.kernel.org/stable/c/bc1d694a1ffe0062c3adf0db1d64ad54454398ec git.kernel.org: https://git.kernel.org/stable/c/45d8896e4cffffb2c6554ccbec6efe7a0d53166f git.kernel.org: https://git.kernel.org/stable/c/1a51aff0e048dc5b8252d65808b79939c942d6ec git.kernel.org: https://git.kernel.org/stable/c/50c66bab321140c49aa2ed779a3ec9d2f085b458