What is CVE-2026-68471?
A vulnerability was found in the Linux kernel's WiFi IEEE 802.11 subsystem where MLE (Multi-Link Element) common info length is not properly validated. Since ieee80211_mle_size_ok() only performs validation for certain MLE types, crafted frames could trigger buffer overflows. Affected systems should update the kernel to mitigate this issue.
Azərbaycanca: Linux kernel-in WiFi IEEE 802.11 alt sistemində MLE (Multi-Link Element) ümumi məlumat uzunluğunun yoxlanılmaması zəifliyi aşkarlanıb. Bu boşluq 'ieee80211_mle_size_ok()' funksiyasında yalnız bəzi MLE növləri üçün validasiya aparıldığından, zərərli çərçivələrlə bufer daşmasına səbəb ola bilər. Təsirə məruz qalmamaq üçün kernel yenilənməlidir.
Related CVEs
link basis: same weakness class CWE-119
FAQ2
Which subsystem of the Linux kernel is affected by CVE-2026-68471?
This vulnerability was found in the Linux kernel's WiFi IEEE 802.11 subsystem.
What is the root cause of this vulnerability?
The root cause is the improper validation of MLE common info length, as the 'ieee80211_mle_size_ok()' function only performs validation for certain MLE types.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.