wifi: iwlwifi: mvm: don't send a 6E related command when not supported
Summary
| CVE | CVE-2026-43325 |
| State | PUBLISHED |
| Assigner | Linux |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2026-05-08 14:16:41 UTC |
| Updated | 2026-05-08 14:16:41 UTC |
| Description | In the Linux kernel, the following vulnerability has been resolved:
wifi: iwlwifi: mvm: don't send a 6E related command when not supported
MCC_ALLOWED_AP_TYPE_CMD is related to 6E support. Do not send it if the
device doesn't support 6E.
Apparently, the firmware is mistakenly advertising support for this
command even on AX201 which does not support 6E and then the firmware
crashes. |
Vendor Declared Affected Products
| Source | Vendor | Product | Version | Platforms |
|---|
| CNA |
Linux |
Linux |
affected 0d2fc8821a7d667180ce27732697105db843a1b9 c0b3fa5e0eaecd38e6a9f8f78e86f468fbde719a git |
Not specified |
| CNA |
Linux |
Linux |
affected 0d2fc8821a7d667180ce27732697105db843a1b9 6607d0e58ceca997816122568ce54db9e134edab git |
Not specified |
| CNA |
Linux |
Linux |
affected 0d2fc8821a7d667180ce27732697105db843a1b9 323156c3541e23da7e582008a7ac30cd51b60acd git |
Not specified |
| CNA |
Linux |
Linux |
affected 6.9 |
Not specified |
| CNA |
Linux |
Linux |
unaffected 6.9 semver |
Not specified |
| CNA |
Linux |
Linux |
unaffected 6.18.22 6.18.* semver |
Not specified |
| CNA |
Linux |
Linux |
unaffected 6.19.12 6.19.* semver |
Not specified |
| CNA |
Linux |
Linux |
unaffected 7.0 * original_commit_for_fix |
Not specified |
References
| Reference | Source | Link | Tags |
|---|
| git.kernel.org/stable/c/323156c3541e23da7e582008a7ac30cd51b60acd |
416baaa9-dc9f-4396-8d5f-8c081fb06d67 |
git.kernel.org |
|
| git.kernel.org/stable/c/c0b3fa5e0eaecd38e6a9f8f78e86f468fbde719a |
416baaa9-dc9f-4396-8d5f-8c081fb06d67 |
git.kernel.org |
|
| git.kernel.org/stable/c/6607d0e58ceca997816122568ce54db9e134edab |
416baaa9-dc9f-4396-8d5f-8c081fb06d67 |
git.kernel.org |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.