Out-of-bounds read in Linux kernel - CVE-2026-93797
Published: September 25, 2026
Vulnerability details
The vulnerability allows a remote attacker to read memory out of bounds.
The vulnerability exists due to an out-of-bounds read in the iwl_mvm_check_he_obss_narrow_bw_ru_iter function when processing an extended capability information element shorter than 11 bytes. A remote attacker can supply a malformed extended capability information element to read memory out of bounds.