GHSA-3qxj-gg5h-r87punknown
In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: bound aligned...
🔗 CVE IDs covered (1)
📋 Description
In the Linux kernel, the following vulnerability has been resolved:
wifi: iwlwifi: bound aligned TLV advance in FW parser
Validate ALIGN(tlv_len, 4) against remaining parser length before consuming bytes from the firmware image.
This avoids length underflow on malformed TLVs.
🔗 References (9)
- https://nvd.nist.gov/vuln/detail/CVE-2026-93789
- https://git.kernel.org/stable/c/528fa9eb14c209533ca26958b76da55e0ce239d8
- https://git.kernel.org/stable/c/7aa9097623afb694bc25382a62e14d8e82bf002f
- https://git.kernel.org/stable/c/acad742714bdc70e7fd7f234323807c596828213
- https://git.kernel.org/stable/c/4cfadb2e01566bc36d42922fbe18838345087050
- https://git.kernel.org/stable/c/61da42fdd21d98ccb8f1ec5224659f3d09202cf4
- https://git.kernel.org/stable/c/8c332d45b736d41301b7e07f322785d821265dbc
- https://git.kernel.org/stable/c/ce709fcab5e1d4df6d4ba980736dc5908502a40f
- https://github.com/advisories/GHSA-3qxj-gg5h-r87p