cbcvebase.
CVE-2026-23325
published 2026-03-25

CVE-2026-23325: In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: Fix possible oob access in mt7996_mac_write_txwi_80211() Check frame…

PriorityP428high7.1CVSS 3.1
AVLACLPRLUINSUCHINAH
EPSS
0.13%
2.6th percentile
In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: Fix possible oob access in mt7996_mac_write_txwi_80211() Check frame length before accessing the mgmt fields in mt7996_mac_write_txwi_80211 in order to avoid a possible oob access.

Affected

42 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.19.8-1 (forky)linux 6.19.8-1 (forky)
linuxlinux
linuxlinux>= 98686cd21624c75a043e96812beadddf4f6f48e5 < a6605f61913155e130bfd04d438c3ce1a572fb0fa6605f61913155e130bfd04d438c3ce1a572fb0f
linuxlinux>= 98686cd21624c75a043e96812beadddf4f6f48e5 < ca1adc04fc2cb1d9f1842e429debe6a520d54966ca1adc04fc2cb1d9f1842e429debe6a520d54966
linuxlinux>= 98686cd21624c75a043e96812beadddf4f6f48e5 < f4cdf6b43689e901a341e7147fcfb25057c38eaef4cdf6b43689e901a341e7147fcfb25057c38eae
linuxlinux>= 98686cd21624c75a043e96812beadddf4f6f48e5 < 45661d22639c4b747ef1bd0822b8e76e421a808a45661d22639c4b747ef1bd0822b8e76e421a808a
linuxlinux>= 98686cd21624c75a043e96812beadddf4f6f48e5 < 60862846308627e9e15546bb647a00de44deb27b60862846308627e9e15546bb647a00de44deb27b
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel>= 0 < 6.19.8-16.19.8-1
linuxlinux_kernel>= 6.13 < 6.18.176.18.17
linuxlinux_kernel>= 6.13.0 < 6.18.176.18.17
linuxlinux_kernel>= 6.19 < 6.19.76.19.7
linuxlinux_kernel>= 6.19.0 < 6.19.76.19.7
linuxlinux_kernel>= 6.2.0 < 6.6.1306.6.130
linuxlinux_kernel>= 6.2.1 < 6.6.1306.6.130
linuxlinux_kernel>= 6.7 < 6.12.776.12.77
linuxlinux_kernel>= 6.7.0 < 6.12.776.12.77
msrcazl3_kernel_6.6.126.1-1_on_azure_linux_3.0
ubuntulinux
ubuntulinux-aws
ubuntulinux-azure
ubuntulinux-azure-6.8
ubuntulinux-azure-fde
ubuntulinux-azure-fde-6.8

CVSS provenance

nvdv3.17.1HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
vendor_msrc7.1HIGH
vendor_ubuntu2.0LOW
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.