In the Linux kernel, the following vulnerability has been resolved:
wifi: mac80211: increase scanieslen for S1G
Currently the S1G capability element is not taken into account for the scanieslen, which leads to a buffer length validation failure in ieee80211prephwscan() and subsequent WARN in _ieee80211startscan(). This prevents hw scanning from functioning. To fix ensure we accommodate for the S1G capability length.
{
"cna_assigner": "Linux",
"osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/39xxx/CVE-2025-39957.json"
}