Descripción
In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: drop stray -static- from fast-RX rx_result ieee80211_invoke_fast_rx() is documented as safe for parallel RX, but its per-invocation rx_result is declared static. Concurrent callers then share one instance and can overwrite each other-s result between ieee80211_rx_mesh_data() and the switch on res. That can make a packet that was queued or consumed by ieee80211_rx_mesh_data() fall through into ieee80211_rx_8023(), or make a packet that should continue return as queued. Make res an automatic variable so each invocation keeps its own result.
CVSS 8.8EPSS 0.167%Riesgo 0.89
Ver fuente- Publicación
- 2026-05-28 10:16:30
- Versiones afectadas
- unknown
- Tipo
- Core software
- Última modificación
- 2026-07-29 13:18:49
- Vector
- CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- Sistemas operativos
- Linux