CVE-2026-93799
In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mvm: validate sta_id in BA window status notif BA_WINDOW_STATUS_NOTIFICATION_ID extracts a 5-bit sta_id from the firmware notification and uses it to index fw_id_to_mac_id[] without bounds checking. Validate sta_id before array access to prevent out-of-bounds indexing.
- Published Sep 24, 2026
- CVSS 8.8 high
- 0.2% chance of exploitation in the next 30 days (EPSS)
- A fix is available