What is CVE-2026-25289?
CVE-2026-25289 is a Memory Corruption vulnerability triggered when processing Device Capability Extended attributes in certain NAN Service Discovery Frames with invalid length values. This affects devices with NAN functionality. Users are advised to update their device firmware.
Azərbaycanca: CVE-2026-25289, müəyyən NAN (Neighbor Awareness Networking) Servis Kəşfi çərçivələrində Device Capability Extended atributları işlənərkən yanlış uzunluq dəyərləri səbəbindən yaddaş korrupsiyasına (Memory Corruption) yol açır. Bu zəiflik NAN funksionallığı olan cihazlara təsir edir. İstifadəçilərə cihaz proqram təminatını yeniləmələri tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-119
FAQ2
What type of issue is CVE-2026-25289?
It is a Memory Corruption vulnerability triggered when processing Device Capability Extended attributes in certain NAN Service Discovery Frames with invalid length values.
What should users do to protect against CVE-2026-25289?
Users are advised to update their device firmware.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.