cbcvebase.
CVE-2026-43110
published 2026-05-06

CVE-2026-43110: In the Linux kernel, the following vulnerability has been resolved: wifi: brcmfmac: validate bsscfg indices in IF events brcmf_fweh_handle_if_event() validates…

PriorityP345high8.8CVSS 3.1
AVAACLPRNUINSUCHIHAH
EPSS
0.24%
15.8th percentile
In the Linux kernel, the following vulnerability has been resolved: wifi: brcmfmac: validate bsscfg indices in IF events brcmf_fweh_handle_if_event() validates the firmware-provided interface index before it touches drvr->iflist[], but it still uses the raw bsscfgidx field as an array index without a matching range check. Reject IF events whose bsscfg index does not fit in drvr->iflist[] before indexing the interface array. [add missing wifi prefix]

Affected

52 ranges· showing 25
VendorProductVersion rangeFixed in
linuxlinux
linuxlinux>= 2880b86859967af710c72f7d34fb421a86a71e22 < b329fbcf075949a038045d8e9b86ae3d5bbd8a54b329fbcf075949a038045d8e9b86ae3d5bbd8a54
linuxlinux>= 2880b86859967af710c72f7d34fb421a86a71e22 < 2ae3ccb78c0a9ef5ee3d80d02ab319ac1d5af7342ae3ccb78c0a9ef5ee3d80d02ab319ac1d5af734
linuxlinux>= 2880b86859967af710c72f7d34fb421a86a71e22 < 9c81bcc2c695e0082012a2a3d36a0eefaa51579c9c81bcc2c695e0082012a2a3d36a0eefaa51579c
linuxlinux>= 2880b86859967af710c72f7d34fb421a86a71e22 < 3ec7437e9d11374105c2c4e47ae671537729d7e63ec7437e9d11374105c2c4e47ae671537729d7e6
linuxlinux>= 2880b86859967af710c72f7d34fb421a86a71e22 < 9fca68c2512a362cad258e4df12a307bb2ee4b8e9fca68c2512a362cad258e4df12a307bb2ee4b8e
linuxlinux>= 2880b86859967af710c72f7d34fb421a86a71e22 < 1ae1e1caa428844e481231f6dbe9b4f475f1d52d1ae1e1caa428844e481231f6dbe9b4f475f1d52d
linuxlinux>= 2880b86859967af710c72f7d34fb421a86a71e22 < b427c2b05222db36d32ee141609de6128e9091bbb427c2b05222db36d32ee141609de6128e9091bb
linuxlinux>= 2880b86859967af710c72f7d34fb421a86a71e22 < 304950a467d83678bd0b0f46331882e2ac23b12d304950a467d83678bd0b0f46331882e2ac23b12d
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel>= 3.9 < 6.6.1366.6.136
linuxlinux_kernel>= 6.13 < 6.18.246.18.24
linuxlinux_kernel>= 6.19 < 6.19.146.19.14
linuxlinux_kernel>= 6.7 < 6.12.836.12.83
ubuntulinux
ubuntulinux-aws
ubuntulinux-aws-5.15
ubuntulinux-aws-fips
ubuntulinux-azure
ubuntulinux-azure-5.15
ubuntulinux-azure-6.8
ubuntulinux-azure-fde
ubuntulinux-azure-fde-5.15
ubuntulinux-azure-fde-6.8

CVSS provenance

nvdv3.18.8HIGHCVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
vendor_ubuntu7.1HIGH
vendor_redhat7.0HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.