CVE-2026-68412 is a vulnerability in Linux Kernel
Published on August 10, 2026
wifi: cfg80211: Fix an error handling path in cfg80211_wext_siwscan()
In the Linux kernel, the following vulnerability has been resolved:
wifi: cfg80211: Fix an error handling path in cfg80211_wext_siwscan()
If the test against IEEE80211_MAX_SSID_LEN fails, then 'creq' leaks.
Use the existing error handling path to fix it.
Products Associated with CVE-2026-68412
Want to know whenever a new CVE is published for Linux Kernel? stack.watch will email you.
Affected Versions
Linux:- Version 2a5193119269062608582418deba7af82844159a and below e67dc2b8d5ac4bb804000b6732768a9ae678912f is affected.
- Version 2a5193119269062608582418deba7af82844159a and below 99d2e850c643e2c70fa165b722a1ad28347a8b3a is affected.
- Version 2a5193119269062608582418deba7af82844159a and below c6659f66d4ee4841aafae5659d2ef5e4c5c63cb6 is affected.
- Version 2.6.30 is affected.
- Before 2.6.30 is unaffected.
- Version 6.18.42, <= 6.18.* is unaffected.
- Version 7.1.6, <= 7.1.* is unaffected.
- Version 7.2-rc4, <= * is unaffected.