PT-2026-94730 · Linux+1 · Linux Kernel+1

CVE-2026-90382

·

Published

2026-09-17

·

Updated

2026-09-28

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description An issue exists in the mt76x02 component of the wifi driver where the kernel may trigger a warning when encountering an invalid rx descriptor length. In monitor mode with the fcsfail filter enabled, the hardware may pass corrupted frames that report a length exceeding the received buffer. While the bounds check correctly discards these frames, the use of a WARN ON ONCE wrapper causes the kernel to be tainted or panic if panic on warn is enabled. This behavior can be triggered by over-the-air garbage frames on busy channels, specifically observed with MT7612U hardware.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

AZL-102384
CVE-2026-90382
OPENSUSE-SU-2026:11893-1

Affected Products

Linux Kernel
Mt7612