In the Linux kernel, the following vulnerability has been resolved:
wifi: ath12k: fix NULL access in assign channel context handler
Currently, when ath12k_mac_assign_vif_to_vdev() fails, the radio handle (ar) gets accessed from the link VIF handle (arvif) for debug logging, This is incorrect. In the fail scenario, radio handle is NULL. Fix the NULL access, avoid radio handle access by moving to the hardware debug logging helper function (ath12k_hw_warn).
Tested-on: QCN9274 hw2.0 PCI WLAN.WBE.1.3.1-00173-QCAHKSWPL_SILICONZ-1 Tested-on: WCN7850 hw2.0 PCI WLAN.HMT.1.0.c5-00481-QCAHMTSWPL_V1.0_V2.0_SILICONZ-3
CVSS Details
- CVSS 3.1 Base Score: 5.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Redhat_linux | — | No solution exists | Jul 14, 2025 | Jul 10, 2025 |
| Ubuntu | — | Upgrade linux-image-raspiUpgrade linux-image-6.14.0-1013-oracle-64kUpgrade linux-image-aws-64k-6.14Upgrade linux-image-generic-hwe-24.04Upgrade linux-image-6.14.0-1013-oracleUpgrade linux-image-gcp-64k-6.14Upgrade linux-image-generic-64kUpgrade linux-image-6.14.0-1012-oemUpgrade linux-image-gcp-64kUpgrade linux-image-realtime-hwe-24.04Upgrade linux-image-aws-6.14Upgrade linux-image-oem-24.04cUpgrade linux-image-virtual-6.14Upgrade linux-image-6.14.0-1013-aws-64kUpgrade linux-image-azureUpgrade linux-image-generic-6.14Upgrade linux-image-6.14.0-1012-realtimeUpgrade linux-image-raspi-6.14Upgrade linux-image-oem-24.04aUpgrade linux-image-gcp-6.14Upgrade linux-image-6.14.0-1016-gcp-64kUpgrade linux-image-oracle-64kUpgrade linux-image-6.14.0-1016-gcpUpgrade linux-image-realtime-6.14Upgrade linux-image-6.14.0-1013-awsUpgrade linux-image-oracle-64k-6.14Upgrade linux-image-6.14.0-1014-raspiUpgrade linux-image-6.14.0-1012-azureUpgrade linux-image-generic-64k-6.14Upgrade linux-image-gcpUpgrade linux-image-aws-64kUpgrade linux-image-virtualUpgrade linux-image-generic-64k-hwe-24.04Upgrade linux-image-oem-6.14Upgrade linux-image-virtual-hwe-24.04Upgrade linux-image-awsUpgrade linux-image-6.14.0-32-genericUpgrade linux-image-azure-6.14Upgrade linux-image-realtimeUpgrade linux-image-oem-24.04bUpgrade linux-image-genericUpgrade linux-image-oracle-6.14Upgrade linux-image-oem-24.04Upgrade linux-image-6.14.0-32-generic-64kUpgrade linux-image-oracle | Jul 14, 2025 | Jul 10, 2025 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub