Description
In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: fix null pointer deref in mt7996_conf_tx() If a link does not have an assigned channel yet, mt7996_vif_link returns NULL. We still need to store the updated queue settings in that case, and apply them later. Move the location of the queue params to within struct mt7996_vif_link.
Product status
c0df2f0caa8dde0d50f36649ee28a54c5079281b (git) before 96841352aaba7723c20afb3a5356746810ef8198
c0df2f0caa8dde0d50f36649ee28a54c5079281b (git) before b8f34c1c5c4f5130c20e3253c95ba1d844d402b9
c0df2f0caa8dde0d50f36649ee28a54c5079281b (git) before 79277f8ad15ec5f255ed0e1427c7a8a3e94e7f52
6.14
Any version before 6.14
6.17.13 (semver)
6.18.2 (semver)
6.19-rc1 (original_commit_for_fix)
References
git.kernel.org/...c/96841352aaba7723c20afb3a5356746810ef8198
git.kernel.org/...c/b8f34c1c5c4f5130c20e3253c95ba1d844d402b9
git.kernel.org/...c/79277f8ad15ec5f255ed0e1427c7a8a3e94e7f52
Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.