Use-after-free in Linux kernel - CVE-2026-74488
Published: August 16, 2026
Vulnerability details
The vulnerability allows a remote attacker to disclose sensitive information.
The vulnerability exists due to use-after-free in mwifiex_11n_dispatch_amsdu_pkt() when parsing A-MSDU TDLS frames. A remote attacker can send a specially crafted A-MSDU frame with shorter earlier subframes to disclose sensitive information.
Reaching the vulnerable path requires TDLS support in firmware and the TDLS ethertype on the subframe.
Affected software
Debian Linux
linux (Debian package)
How to mitigate CVE-2026-74488
linux (Debian package) - update to 6.12.105-1
External References
- https://git.kernel.org/stable/c/25e5a3fe4f15e30f74eca42cbf3bcc3a3fbeda79
- https://git.kernel.org/stable/c/5a21ab03829cb6d2682c127f22e2b9cd63b4393f
- https://git.kernel.org/stable/c/99a948382af8a225e2d5e54a7052158cd6281cc6
- https://git.kernel.org/stable/c/c9dcfe6b8b71369e1d732e2ff622c3696a2f032c
- https://git.kernel.org/stable/c/ece2ebb34247d573142617dfc534a9dc11ba59be