SB20260812224 - NULL pointer dereference in Linux kernel mt76 mt7915 driver
Published: August 12, 2026
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 vulnerability.
1) NULL pointer dereference (CVE-ID: CVE-2026-68310)
CWE-ID: CWE-476 - NULL Pointer Dereference
CVSSv4: 6.8 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to a NULL pointer dereference in HE capability handling in mt7915_mcu_bss_he_tlv() and mt7915_mcu_sta_bfer_tlv() when processing HE-specific setup for a vif type with no matching capability entry. A local user can trigger HE-specific processing to cause a denial of service.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/23a2b98e754da04e0e90314d5fa8ca44349590fb
- https://git.kernel.org/stable/c/6f99a5667c6c7c3e0da1d3c4dc8dfb103042609e
- https://git.kernel.org/stable/c/871549814eb4da081f1e93cc0c7ea626a310a966
- https://git.kernel.org/stable/c/8e9db062654a388d0fa587acbeeae68dd33eba41
- https://git.kernel.org/stable/c/a031f454f14e3e76ad03bcb23918e1a82b4b0869