PT-2025-52916 · Linux+4 · Linux Kernel+4
CVE-2025-68380
·
Publicado
2025-12-24
·
Atualizado
2026-08-30
CVSS v3.1
6.5
Média
| Vetor | AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Linux kernel (affected versions not specified)
Description
The Linux kernel contains an issue within the ath11k module related to the handling of High Efficiency (HE) MCS (Modulation and Coding Scheme) assignment during Wi-Fi connections. Specifically, the
ath11k wmi send peer assoc cmd() function incorrectly swaps the assignment of transmit and receive MCS values when communicating with the firmware. This can lead to a firmware crash when connecting to an Access Point (AP) that advertises unsupported MCS values for 160 MHz transmission, such as 0xffff. The issue arises because the firmware interprets the incorrectly assigned MCS values, leading to unexpected behavior. The HE rate control mask, intended to limit transmit MCS, is also affected by this swap.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Debian
Linuxmint
Linux Kernel
Ubuntu
Ath11K