In the Linux kernel, the following vulnerability has been resolved:
wifi: ath12k: fix NULL access in assign channel context handler
Currently, when ath12k_mac_assign_vif_to_vdev() fails, the radio handle (ar) gets accessed from the link VIF handle (arvif) for debug logging, This is incorrect. In the fail scenario, radio handle is NULL. Fix the NULL access, avoid radio handle access by moving to the hardware debug logging helper function (ath12k_hw_warn).
Tested-on: QCN9274 hw2.0 PCI WLAN.WBE.1.3.1-00173-QCAHKSWPL_SILICONZ-1 Tested-on: WCN7850 hw2.0 PCI WLAN.HMT.1.0.c5-00481-QCAHMTSWPL_V1.0_V2.0_SILICONZ-3
CVSS Details
- CVSS 3.1 Base Score: 5.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Redhat_linux | — | No solution exists | Jul 14, 2025 | Jul 10, 2025 |
| Ubuntu | — | Upgrade linux-image-gcp-64kUpgrade linux-image-raspiUpgrade linux-image-6.14.0-1016-gcpUpgrade linux-image-oem-24.04cUpgrade linux-image-realtime-hwe-24.04Upgrade linux-image-generic-6.14Upgrade linux-image-gcp-6.14Upgrade linux-image-azureUpgrade linux-image-oracle-64kUpgrade linux-image-6.14.0-1013-oracleUpgrade linux-image-raspi-6.14Upgrade linux-image-oem-24.04aUpgrade linux-image-6.14.0-1012-oemUpgrade linux-image-realtime-6.14Upgrade linux-image-6.14.0-1013-awsUpgrade linux-image-6.14.0-1013-oracle-64kUpgrade linux-image-oracle-64k-6.14Upgrade linux-image-6.14.0-1013-aws-64kUpgrade linux-image-gcp-64k-6.14Upgrade linux-image-6.14.0-1016-gcp-64kUpgrade linux-image-6.14.0-1012-realtimeUpgrade linux-image-generic-64kUpgrade linux-image-generic-hwe-24.04Upgrade linux-image-aws-6.14Upgrade linux-image-aws-64k-6.14Upgrade linux-image-virtual-6.14Upgrade linux-image-azure-6.14Upgrade linux-image-aws-64kUpgrade linux-image-6.14.0-1012-azureUpgrade linux-image-6.14.0-32-generic-64kUpgrade linux-image-generic-64k-hwe-24.04Upgrade linux-image-awsUpgrade linux-image-virtual-hwe-24.04Upgrade linux-image-6.14.0-32-genericUpgrade linux-image-generic-64k-6.14Upgrade linux-image-oracleUpgrade linux-image-oem-24.04Upgrade linux-image-oracle-6.14Upgrade linux-image-genericUpgrade linux-image-gcpUpgrade linux-image-oem-6.14Upgrade linux-image-virtualUpgrade linux-image-realtimeUpgrade linux-image-oem-24.04bUpgrade linux-image-6.14.0-1014-raspi | Jul 14, 2025 | Jul 10, 2025 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub