CVE-2026-98195EPSS p7.4%
CVE-2026-98195CVE-2026-98195
Description
In the Linux kernel, the following vulnerability has been resolved:
wifi: iwlegacy: fix broadcast stations deallocation
On the error path of __il4965_up(), il_dealloc_bcast_stations() clears
only IL_STA_UCODE_ACTIVE, leaving IL_STA_BCAST set. This causes the
same broadcast stations to be deallocated again by __il4965_down().
This can occur when RF_KILL is toggled during driver startup.
To fix clear the entire 'used' field, since we will not do any
other operations on the station.
Scoring
| EPSS | 0.18% probability of exploitation · percentile 7.4% · 2026-10-10T12:00:23Z |
| Last modified | 2026-10-06 |