cbcvebase.
CVE-2026-23040
published 2026-02-04

CVE-2026-23040: In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211_hwsim: fix typo in frequency notification The NAN notification is for 5745…

PriorityP417medium7.6
EPSS
0.14%
4.2th percentile
In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211_hwsim: fix typo in frequency notification The NAN notification is for 5745 MHz which corresponds to channel 149 and not 5475 which is not actually a valid channel. This could result in a NULL pointer dereference in cfg80211_next_nan_dw_notif.

Affected

6 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.18.8-1 (forky)linux 6.18.8-1 (forky)
linuxlinux
linuxlinux>= a37a6f54439bf82b827a7072415d3a4afa4e12bd < 1251bbdb8f5b2ea86ca9b4268a2e6aa34372ab331251bbdb8f5b2ea86ca9b4268a2e6aa34372ab33
linuxlinux>= a37a6f54439bf82b827a7072415d3a4afa4e12bd < 333418872bfecf4843f1ded7a4151685dfcf07d5333418872bfecf4843f1ded7a4151685dfcf07d5
linuxlinux_kernel>= 0 < 6.18.8-16.18.8-1
linuxlinux_kernel>= 6.18.0 < 6.18.66.18.6
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.