wifi: mt76: mt7915: guard HE capability lookups
Summary
| CVE | CVE-2026-68310 |
|---|---|
| State | PUBLISHED |
| Assigner | Linux |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2026-08-10 13:20:20 UTC |
| Updated | 2026-08-19 17:20:41 UTC |
| Description | In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7915: guard HE capability lookups mt7915_mcu_bss_he_tlv() and mt7915_mcu_sta_bfer_tlv() both run after checking HE support, then dereference the HE PHY capability returned by mt76_connac_get_he_phy_cap(). That helper can return NULL when no capability entry matches the vif type. Fetch the capability before appending the TLV and skip the HE-specific setup when no matching capability is available. |
Risk And Classification
EPSS: 0.001680000 probability, percentile 0.065050000 (date 2026-08-19)
Vendor Declared Affected Products
| Source | Vendor | Product | Version | Platforms |
|---|---|---|---|---|
| CNA | Linux | Linux | affected e6d557a78b6016eee7b9cd6832343efd32cc0b27 8d5f1f4d2ea2c9d626ccc28dba7ea0df862acc67 git | Not specified |
| CNA | Linux | Linux | affected e6d557a78b6016eee7b9cd6832343efd32cc0b27 23a2b98e754da04e0e90314d5fa8ca44349590fb git | Not specified |
| CNA | Linux | Linux | affected e6d557a78b6016eee7b9cd6832343efd32cc0b27 a031f454f14e3e76ad03bcb23918e1a82b4b0869 git | Not specified |
| CNA | Linux | Linux | affected e6d557a78b6016eee7b9cd6832343efd32cc0b27 871549814eb4da081f1e93cc0c7ea626a310a966 git | Not specified |
| CNA | Linux | Linux | affected e6d557a78b6016eee7b9cd6832343efd32cc0b27 6f99a5667c6c7c3e0da1d3c4dc8dfb103042609e git | Not specified |
| CNA | Linux | Linux | affected e6d557a78b6016eee7b9cd6832343efd32cc0b27 8e9db062654a388d0fa587acbeeae68dd33eba41 git | Not specified |
| CNA | Linux | Linux | affected 5.18 | Not specified |
| CNA | Linux | Linux | unaffected 5.18 semver | Not specified |
| CNA | Linux | Linux | unaffected 6.1.183 6.1.* semver | Not specified |
| CNA | Linux | Linux | unaffected 6.6.148 6.6.* semver | Not specified |
| CNA | Linux | Linux | unaffected 6.12.101 6.12.* semver | Not specified |
| CNA | Linux | Linux | unaffected 6.18.42 6.18.* semver | Not specified |
| CNA | Linux | Linux | unaffected 7.1.6 7.1.* semver | Not specified |
| CNA | Linux | Linux | unaffected 7.2 * original_commit_for_fix | Not specified |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| git.kernel.org/stable/c/a031f454f14e3e76ad03bcb23918e1a82b4b0869 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | |
| git.kernel.org/stable/c/23a2b98e754da04e0e90314d5fa8ca44349590fb | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | |
| git.kernel.org/stable/c/6f99a5667c6c7c3e0da1d3c4dc8dfb103042609e | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | |
| git.kernel.org/stable/c/871549814eb4da081f1e93cc0c7ea626a310a966 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | |
| git.kernel.org/stable/c/8d5f1f4d2ea2c9d626ccc28dba7ea0df862acc67 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | |
| git.kernel.org/stable/c/8e9db062654a388d0fa587acbeeae68dd33eba41 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.