Home

Description

In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: increase scan_ies_len for S1G Currently the S1G capability element is not taken into account for the scan_ies_len, which leads to a buffer length validation failure in ieee80211_prep_hw_scan() and subsequent WARN in __ieee80211_start_scan(). This prevents hw scanning from functioning. To fix ensure we accommodate for the S1G capability length.

PUBLISHED Reserved 2025-04-16 | Published 2025-10-09 | Updated 2025-10-09 | Assigner Linux

Product status

Default status
unaffected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 before 16c9244a62116fe148f6961753b68e7160799f97
affected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 before 93e063f15e17acb8cd6ac90c8f0802c2624e1a74
affected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 before 32adb020b0c32939da1322dcc87fc0ae2bc935d1
affected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 before 0dbad5f5549e54ac269cc04ce89f212892a98cab
affected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 before 7e2f3213e85eba00acb4cfe6d71647892d63c3a1
affected

Default status
affected

6.1.154
unaffected

6.6.108
unaffected

6.12.49
unaffected

6.16.9
unaffected

6.17
unaffected

References

git.kernel.org/...c/16c9244a62116fe148f6961753b68e7160799f97

git.kernel.org/...c/93e063f15e17acb8cd6ac90c8f0802c2624e1a74

git.kernel.org/...c/32adb020b0c32939da1322dcc87fc0ae2bc935d1

git.kernel.org/...c/0dbad5f5549e54ac269cc04ce89f212892a98cab

git.kernel.org/...c/7e2f3213e85eba00acb4cfe6d71647892d63c3a1

cve.org (CVE-2025-39957)

nvd.nist.gov (CVE-2025-39957)

Download JSON