CVE-2025-71224Improper Handling of Missing Special Element in Linux

Severity
3.3LOW
No vector
EPSS
0.1%
top 84.49%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 14

Description

In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: ocb: skip rx_no_sta when interface is not joined ieee80211_ocb_rx_no_sta() assumes a valid channel context, which is only present after JOIN_OCB. RX may run before JOIN_OCB is executed, in which case the OCB interface is not operational. Skip RX peer handling when the interface is not joined to avoid warnings in the RX path.

Affected Packages5 packages

Linuxlinux/linux_kernel3.19.05.10.250+5
Debianlinux/linux_kernel< 5.10.251-1+3
CVEListV5linux/linux239281f803e2efdb77d906ef296086b6917e5d71fcc768760df08337525cde28e8460e36f9855af8+7
debiandebian/linux< linux 6.1.164-1 (bookworm)
debiandebian/linux-6.1< linux 6.1.164-1 (bookworm)

🔴Vulnerability Details

3
GHSA
GHSA-5w3w-6qf9-5hqm: In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: ocb: skip rx_no_sta when interface is not joined ieee80211_ocb_r2026-02-14
OSV
CVE-2025-71224: In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: ocb: skip rx_no_sta when interface is not joined ieee80211_ocb_rx_2026-02-14
OSV
wifi: mac80211: ocb: skip rx_no_sta when interface is not joined2026-02-14

📋Vendor Advisories

2
Red Hat
kernel: wifi: mac80211: ocb: skip rx_no_sta when interface is not joined2026-02-14
Debian
CVE-2025-71224: linux - In the Linux kernel, the following vulnerability has been resolved: wifi: mac80...2025

🕵️Threat Intelligence

1
Wiz
CVE-2025-71224 Impact, Exploitability, and Mitigation Steps | Wiz