PT-2026-30139 · Unknown+3 · Mac80211 Hwsim+3

Published

2026-04-03

·

Updated

2026-04-20

·

CVE-2026-23444

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A flaw exists in the Linux kernel's mac80211 component related to the handling of skb (socket buffer) memory allocation within the ieee80211 tx prepare skb() function. Specifically, the function had inconsistent error handling paths, where only two out of three error scenarios resulted in the proper freeing of the allocated skb. This inconsistency could lead to a memory leak if ieee80211 tx prepare() returned TX DROP. The fix ensures that the skb is freed in all error paths and removes redundant frees in calling functions like ath9k, mt76, and mac80211 hwsim to prevent double-free issues.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Memory Leak

Weakness Enumeration

Related Identifiers

CVE-2026-23444
ECHO-0715-F2FE-CBC5
OESA-2026-1946
OESA-2026-1947
OESA-2026-1948

Affected Products

Linux Kernel
Ath9K
Mac80211 Hwsim
Mt76