wifi: rtw88: fix wrong pci_get_drvdata type in AER handlers
Summary
| CVE | CVE-2026-74412 |
| State | PUBLISHED |
| Assigner | Linux |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2026-08-15 06:22:43 UTC |
| Updated | 2026-08-15 06:22:43 UTC |
| Description | In the Linux kernel, the following vulnerability has been resolved:
wifi: rtw88: fix wrong pci_get_drvdata type in AER handlers
rtw88 stores an ieee80211_hw pointer via pci_set_drvdata() at probe
time, but io_error_detected() and io_resume() retrieve it as a
net_device pointer. This causes netif_device_detach/attach to
operate on an ieee80211_hw struct, reading and writing at wrong
offsets.
Use ieee80211_stop_queues/wake_queues instead, consistent with
every other queue stop/start path in the driver. |
Vendor Declared Affected Products
| Source | Vendor | Product | Version | Platforms |
|---|
| CNA |
Linux |
Linux |
affected cdb82c80b9349ed1d9ce6b49856128e04f4effc9 1ef3d1338d94ec41f58fbfb6ba7742a27ea61d89 git |
Not specified |
| CNA |
Linux |
Linux |
affected cdb82c80b9349ed1d9ce6b49856128e04f4effc9 d7920797f721f944861f3c48ffb2b73f84b631fe git |
Not specified |
| CNA |
Linux |
Linux |
affected cdb82c80b9349ed1d9ce6b49856128e04f4effc9 706183dbef4a79d120d4e928f693bea50df496f8 git |
Not specified |
| CNA |
Linux |
Linux |
affected 6.17 |
Not specified |
| CNA |
Linux |
Linux |
unaffected 6.17 semver |
Not specified |
| CNA |
Linux |
Linux |
unaffected 6.18.40 6.18.* semver |
Not specified |
| CNA |
Linux |
Linux |
unaffected 7.1.5 7.1.* semver |
Not specified |
| CNA |
Linux |
Linux |
unaffected 7.2-rc1 * original_commit_for_fix |
Not specified |
References
| Reference | Source | Link | Tags |
|---|
| git.kernel.org/stable/c/d7920797f721f944861f3c48ffb2b73f84b631fe |
416baaa9-dc9f-4396-8d5f-8c081fb06d67 |
git.kernel.org |
|
| git.kernel.org/stable/c/706183dbef4a79d120d4e928f693bea50df496f8 |
416baaa9-dc9f-4396-8d5f-8c081fb06d67 |
git.kernel.org |
|
| git.kernel.org/stable/c/1ef3d1338d94ec41f58fbfb6ba7742a27ea61d89 |
416baaa9-dc9f-4396-8d5f-8c081fb06d67 |
git.kernel.org |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.