CVE-2026-93807
wifi: rsi: avoid reading TKIP MIC keys for non-TKIP ciphers
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
In the Linux kernel, the following vulnerability has been resolved: wifi: rsi: avoid reading TKIP MIC keys for non-TKIP ciphers rsi_hal_load_key() copies tx_mic_key and rx_mic_key from data[16] and data[24] whenever key data is present. Those offsets are only part of the 32-byte TKIP key layout. Shorter keys used by other ciphers, such as CCMP, do not provide those bytes, so the unconditional copies can read past the supplied key buffer. Only copy the MIC keys for TKIP, and reject malformed TKIP keys that are shorter than the expected 32-byte layout. [drop useless length check]
| Vendor | linux |
| Product | linux |
| Ecosystems | |
| Industries | Technology |
| Published | Sep 24, 2026 |
Stay Ahead of the Next One
Get instant alerts for linux linux
Be the first to know when new unknown vulnerabilities affecting linux linux are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
Linux / Linux
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 5902e3c08c63d65724772f74d65b9fb032625dca 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 55b86ef6c2e68879ffd95203b011ef42a013ab88 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 843fe9bc583b7686ca68312ac9319c9240a73c03 0 < 6.12.111 0 < 6.18.53
Linux / Linux
All versions affected