In the Linux kernel, the following vulnerability has been resolved:
wifi: ath12k: fix NULL access in assign channel context handler
Currently, when ath12k_mac_assign_vif_to_vdev() fails, the radio handle (ar) gets accessed from the link VIF handle (arvif) for debug logging, This is incorrect. In the fail scenario, radio handle is NULL. Fix the NULL access, avoid radio handle access by moving to the hardware debug logging helper function (ath12k_hw_warn).
Tested-on: QCN9274 hw2.0 PCI WLAN.WBE.1.3.1-00173-QCAHKSWPL_SILICONZ-1 Tested-on: WCN7850 hw2.0 PCI WLAN.HMT.1.0.c5-00481-QCAHMTSWPL_V1.0_V2.0_SILICONZ-3
CVSS Details
- CVSS 3.1 Base Score: 5.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Redhat_linux | — | No solution exists | Jul 14, 2025 | Jul 10, 2025 |
| Ubuntu | — | Upgrade linux-image-raspi-6.14Upgrade linux-image-oracle-64kUpgrade linux-image-6.14.0-1012-oemUpgrade linux-image-raspiUpgrade linux-image-generic-hwe-24.04Upgrade linux-image-6.14.0-1013-aws-64kUpgrade linux-image-6.14.0-1016-gcp-64kUpgrade linux-image-realtime-hwe-24.04Upgrade linux-image-generic-6.14Upgrade linux-image-virtual-6.14Upgrade linux-image-oem-24.04cUpgrade linux-image-azureUpgrade linux-image-realtime-6.14Upgrade linux-image-6.14.0-1012-realtimeUpgrade linux-image-6.14.0-1016-gcpUpgrade linux-image-6.14.0-1013-awsUpgrade linux-image-aws-6.14Upgrade linux-image-6.14.0-1013-oracle-64kUpgrade linux-image-gcp-64k-6.14Upgrade linux-image-aws-64k-6.14Upgrade linux-image-6.14.0-1013-oracleUpgrade linux-image-oracle-64k-6.14Upgrade linux-image-gcp-6.14Upgrade linux-image-oem-24.04aUpgrade linux-image-generic-64kUpgrade linux-image-gcp-64kUpgrade linux-image-oem-24.04bUpgrade linux-image-virtualUpgrade linux-image-oem-24.04Upgrade linux-image-generic-64k-6.14Upgrade linux-image-genericUpgrade linux-image-oracle-6.14Upgrade linux-image-6.14.0-1014-raspiUpgrade linux-image-realtimeUpgrade linux-image-aws-64kUpgrade linux-image-generic-64k-hwe-24.04Upgrade linux-image-6.14.0-1012-azureUpgrade linux-image-oem-6.14Upgrade linux-image-gcpUpgrade linux-image-awsUpgrade linux-image-virtual-hwe-24.04Upgrade linux-image-6.14.0-32-generic-64kUpgrade linux-image-azure-6.14Upgrade linux-image-6.14.0-32-genericUpgrade linux-image-oracle | Jul 14, 2025 | Jul 10, 2025 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub