cbcvebase.
CVE-2024-26666
published 2024-04-02

CVE-2024-26666: In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: fix RCU use in TDLS fast-xmit This looks up the link under RCU protection…

PriorityP335high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.23%
14.5th percentile
In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: fix RCU use in TDLS fast-xmit This looks up the link under RCU protection, but isn't guaranteed to actually have protection. Fix that.

Affected

10 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.7.7-1 (forky)linux 6.7.7-1 (forky)
linuxlinux
linuxlinux>= 8cc07265b69141f8ed9597d0f27185239c241c80 < fc3432ae8232ff4025e7c55012dd88db0e3d18ebfc3432ae8232ff4025e7c55012dd88db0e3d18eb
linuxlinux>= 8cc07265b69141f8ed9597d0f27185239c241c80 < c255c3b653c6e8b52ac658c305e2fece2825f7adc255c3b653c6e8b52ac658c305e2fece2825f7ad
linuxlinux>= 8cc07265b69141f8ed9597d0f27185239c241c80 < 9480adfe4e0f0319b9da04b44e4eebd5ad07e0cd9480adfe4e0f0319b9da04b44e4eebd5ad07e0cd
linuxlinux_kernel
linuxlinux_kernel>= 0 < 6.7.7-16.7.7-1
linuxlinux_kernel>= 0 < 6.7.7-16.7.7-1
linuxlinux_kernel>= 6.5 < 6.6.176.6.17
linuxlinux_kernel>= 6.7 < 6.7.56.7.5

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_debian7.8LOW
vendor_redhat7.8HIGH
vendor_ubuntu7.0HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.