← All Advisories

CVE-2026-98159

Last refreshed2026-10-03

Status: UPDATED  |  Advisory ID: CVE-2026-98159

Key Details

CVECVE-2026-98159
Affected productsLinux Linux

Affected Products, Subsystems & Sectors

VendorProductAffected VersionsPatch Status
LinuxLinux
SubsystemsGeneral OT
SectorsMultiple

What to Know

In the Linux kernel, the following vulnerability has been resolved:

wifi: mt76: mt7921: validate CLC firmware records

The CLC region is supplied by firmware, but the loader trusts the

region count and each record length. A malformed image can make the

region table pointer precede the firmware buffer, make the record loop

fail to advance, or index phy->clc past its end. Validate the table and

record bounds before dereferencing or copying. (NVD)

What to Do

Monitor Linux's web page for any future patch releases.

References

SourceReference
NVDhttps://nvd.nist.gov/vuln/detail/CVE-2026-98159
CVEhttps://www.cve.org/CVERecord?id=CVE-2026-98159