{"apiVersion":"1.0","identifier":"CVE-2026-74340","description":"In the Linux kernel, the following vulnerability has been resolved: wifi: wcn36xx: fix OOB read from firmware count in PRINT_REG_INFO indication The firmware-controlled rsp->count field is used as the loop bound for indexing into the flexible rsp->regs[] array without validation against the message length. A count exceeding the actual data causes out-of- bounds reads from the heap-allocated message buffer. Add a check that count fits within the received message.","publishedAt":"2026-08-15T06:22:34","lastModifiedAt":"2026-08-17T06:19:28","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-74340","cvssScore":8.1,"cvssVector":"CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H","epssProbability":0.00274,"riskScore":0.83,"affectedProduct":"linux","affectedVersions":"unknown","vulnerabilityType":"Kernel","operatingSystems":[],"links":{"self":"https://www.redsauce.net/api/cves/CVE-2026-74340","webPages":{"es":"https://www.redsauce.net/es/cves/CVE-2026-74340","en":"https://www.redsauce.net/en/cves/CVE-2026-74340","fr":"https://www.redsauce.net/fr/cves/CVE-2026-74340","pt":"https://www.redsauce.net/pt/cves/CVE-2026-74340","de":"https://www.redsauce.net/de/cves/CVE-2026-74340","sk":"https://www.redsauce.net/sk/cves/CVE-2026-74340","el":"https://www.redsauce.net/el/cves/CVE-2026-74340"},"source":"https://nvd.nist.gov/vuln/detail/CVE-2026-74340"}}