CVE-2026-93281EPSS p8.0%
CVE-2026-93281CVE-2026-93281
Description
In the Linux kernel, the following vulnerability has been resolved:
wifi: rtw89: fix HE extended capability length check
rtw89_mac_check_he_obss_narrow_bw_ru_iter() reads extended capability
byte 10, but rejects only datalen values below 10. Byte 10 requires at
least 11 bytes.
Require datalen >= 11 before reading data[10].
Scoring
| EPSS | 0.19% probability of exploitation · percentile 8.0% · 2026-10-05T12:00:23Z |
| Last modified | 2026-09-24 |