PT-2025-52922 · Ath12K+4 · Ath12K+4

Published

2025-12-24

·

Updated

2026-04-20

·

CVE-2025-68729

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions Linux Kernel (affected versions not specified)
Description A flaw exists in the Linux kernel’s WiFi subsystem, specifically within the ath12k driver. The issue involves incorrect handling of MSDU buffer types in the receive (RX) error path. Packets received from unassociated peers on the REO exception ring are incorrectly identified as MSDU buffer type when the driver expects link descriptor type packets. This leads to the packets not being parsed, but the associated skb (socket buffer) is not freed, potentially causing kernel crashes and memory leaks. The resolution involves updating the RX error handler to explicitly drop MSDU buffer type packets received on the REO exception ring, preventing further processing of invalid packets and improving RX error handling stability.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2025-68729
OPENSUSE-SU-2026:10039-1
OPENSUSE-SU-2026:10301-1
USN-8094-1
USN-8094-2
USN-8094-3
USN-8094-4
USN-8094-5
USN-8152-1

Affected Products

Debian
Linux Kernel
Linuxmint
Ubuntu
Ath12K