Expired pointer dereference in Linux kernel - CVE-2026-97492
Published: September 24, 2026
Vulnerability details
The vulnerability allows a local user to leave drivers with dangling pointers.
The vulnerability exists due to improper state cleanup in the mac80211 ieee80211_reconfig NAN reconfiguration failure handling when handling a failed NAN reconfiguration while other interfaces are present. A local user can trigger NAN reconfiguration processing that fails to leave drivers with dangling pointers.
The stale pointers can reference station and link objects.