#VU124477 Out-of-bounds write in Linux kernel - CVE-2026-23363
Published: March 25, 2026
Linux kernel
Linux Foundation
Description
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to improper input validation in the mt7925_mac_write_txwi_80211 function when handling Wi-Fi management frames. A remote attacker can send a specially crafted 802.11 frame with a short length to trigger an out-of-bounds access and crash the system.
Exploitation does not require authentication or user interaction.