Description
In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix NULL access in assign channel context handler Currently, when ath12k_mac_assign_vif_to_vdev() fails, the radio handle (ar) gets accessed from the link VIF handle (arvif) for debug logging, This is incorrect. In the fail scenario, radio handle is NULL. Fix the NULL access, avoid radio handle access by moving to the hardware debug logging helper function (ath12k_hw_warn). Tested-on: QCN9274 hw2.0 PCI WLAN.WBE.1.3.1-00173-QCAHKSWPL_SILICONZ-1 Tested-on: WCN7850 hw2.0 PCI WLAN.HMT.1.0.c5-00481-QCAHMTSWPL_V1.0_V2.0_SILICONZ-3
Product status
90570ba4610bdb1db39ef45f2b271a9f89680a9d (git) before 3f919f76893069ec3c7475acaeb611eb31fca22d
90570ba4610bdb1db39ef45f2b271a9f89680a9d (git) before ea24531d00f782f4e659e8c74578b7ac144720ca
6.14
Any version before 6.14
6.15.3 (semver)
6.16 (original_commit_for_fix)
References
git.kernel.org/...c/3f919f76893069ec3c7475acaeb611eb31fca22d
git.kernel.org/...c/ea24531d00f782f4e659e8c74578b7ac144720ca