PT-2026-44289 · Linux+3 · Linux Kernel+3

CVE-2026-46166

·

Published

2026-05-28

·

Updated

2026-09-07

CVSS v3.1

8.8

High

VectorAV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A slab-use-after-free error exists in the mac80211 wireless subsystem. The issue occurs during radar detect work when the ieee80211 dfs cac cancel() function is called, which can cause the iterated chanctx to be freed and removed from the list while still being accessed.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Improper Authentication

Use After Free

Out of bounds Read

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2026:27288
ALSA-2026:27789
BDU:2026-10014
CVE-2026-46166
OPENSUSE-SU-2026:10954-1
OPENSUSE-SU-2026:21555-1
RHSA-2026:27288
RHSA-2026:27708
RHSA-2026:27789
RHSA-2026:33215
SUSE-SU-2026:23066-1
SUSE-SU-2026:23068-1
SUSE-SU-2026:23221-1
SUSE-SU-2026:23231-1
SUSE-SU-2026:23237-1
SUSE-SU-2026:3130-1
SUSE-SU-2026:3166-1
USN-8566-1
USN-8568-1
USN-8569-1
USN-8593-1
USN-8603-1
USN-8618-1
USN-8663-1
USN-8664-1
USN-8728-1

Affected Products

Linuxmint
Linux Kernel
Rocky Linux
Ubuntu