← All Advisories

CVE-2026-97492

Last refreshed2026-10-03

Status: UPDATED  |  Advisory ID: CVE-2026-97492

Key Details

CVECVE-2026-97492
Affected productsLinux Linux

Affected Products, Subsystems & Sectors

VendorProductAffected VersionsPatch Status
LinuxLinux
SubsystemsGeneral OT
SectorsMultiple

What to Know

In the Linux kernel, the following vulnerability has been resolved:

wifi: mac80211: don't call ieee80211_handle_reconfig_failure when not needed

In case reconfiguration of NAN fails, we call

ieee80211_handle_reconfig_failure, that marks all interfaces as not in

the driver.

Then, at the error path of the reconfig, cfg80211_shutdown_all_interfaces

is called to destroy all the interfaces.

If we have any other interface but the NAN one, for example a BSS

station, then when its state (links, stations) will be removed, we

won't tell the driver about this, because we will think that the

interfaces are not in the driver, and then drivers might remain with

dangling pointers to objects like stations and links (at least for

iwlwifi this is the case).

ieee80211_handle_reconfig_failure is meant to be called after we cleaned

up the state in the driver, there is no reason to call it for NAN

reconfiguration failure.

Fix the code to just warn in such a case, as we do in other error paths

in reconfig where it is too complicated to rewind. (NVD)

What to Do

Monitor Linux's web page for any future patch releases.

References

SourceReference
NVDhttps://nvd.nist.gov/vuln/detail/CVE-2026-97492
CVEhttps://www.cve.org/CVERecord?id=CVE-2026-97492