PT-2026-61148 · Linux · Linux Kernel

CVE-2026-63832

·

Published

2026-07-19

·

Updated

2026-07-20

CVSS v3.1

8.8

High

VectorAV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description An issue exists in the Linux kernel wifi mt76 driver where the mt76 sta add() function fails to check if a wireless client identifier (WCID) has already been published. When using mt7925, the mt7925 mac sta add() function publishes the WCID, leading to a reinitialization of the wcid->poll list. This results in corruption of the dev->sta poll list, specifically causing a list add corruption where a pointer is incorrectly changed to reference itself.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2026-63832

Affected Products

Linux Kernel