SB20260816233 - Use-after-free in Linux kernel marvell mwifiex driver
Published: August 16, 2026
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 vulnerability.
1) Use-after-free (CVE-ID: CVE-2026-74488)
CWE-ID: CWE-416 - Use After Free
CVSSv4: 8.7 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N]
The vulnerability allows a remote attacker to disclose sensitive information.
The vulnerability exists due to use-after-free in mwifiex_11n_dispatch_amsdu_pkt() when parsing A-MSDU TDLS frames. A remote attacker can send a specially crafted A-MSDU frame with shorter earlier subframes to disclose sensitive information.
Reaching the vulnerable path requires TDLS support in firmware and the TDLS ethertype on the subframe.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/25e5a3fe4f15e30f74eca42cbf3bcc3a3fbeda79
- https://git.kernel.org/stable/c/5a21ab03829cb6d2682c127f22e2b9cd63b4393f
- https://git.kernel.org/stable/c/99a948382af8a225e2d5e54a7052158cd6281cc6
- https://git.kernel.org/stable/c/c9dcfe6b8b71369e1d732e2ff622c3696a2f032c
- https://git.kernel.org/stable/c/ece2ebb34247d573142617dfc534a9dc11ba59be