Out-of-bounds read in Linux kernel - CVE-2026-90016
Published: September 16, 2026
Vulnerability details
The vulnerability allows a remote attacker to disclose sensitive information and cause a denial of service.
The vulnerability exists due to an out-of-bounds read in rtw_restruct_wmm_ie() in the rtl8723bs driver when processing attacker-influenced information element buffers from association or scan data. A remote attacker can provide crafted association or scan data to disclose sensitive information and cause a denial of service.