CVE-2026-90378

Source
https://cve.org/CVERecord?id=CVE-2026-90378
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-90378.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-90378
Downstream
Published
2026-09-17T16:09:16Z
Modified
2026-09-18T03:48:37Z
Summary
wifi: mt76: mt792x: Fix memory leak in SDIO TX path
Details

In the Linux kernel, the following vulnerability has been resolved:

wifi: mt76: mt792x: Fix memory leak in SDIO TX path

When tx_prepare_skb() returns an error in the SDIO TX path, the skb is not freed, leading to a memory leak. This can occur when zero-length frames (such as WNM NULL frames) are dropped to prevent potential hardware TX hangs.

Fix this by properly releasing the skb with ieee80211_tx_status_ext() when tx_prepare_skb() fails.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/90xxx/CVE-2026-90378.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
b747fa343817fd322b4463dda99d28fc51e19c52
Fixed
b64d196280aff8494ba6fb387e37b18479c99b83
Fixed
9ef1351209d42b7d96604f2a13d7ea8215a24e07
Fixed
c2c7f16f2c62f79f7c381e500afa7123580742a5
Fixed
6a8000c76dc34490a2bb321ad1a5f882a2ccab7c
Fixed
ddf6a17d8e3d0dbb841c13c10d7c1340a138a80d
Fixed
6a342db7a6502bc6781579145e05d4d4731786ab
Fixed
808f2767d4217a5b96f674288573b9b89d432eed

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-90378.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.12.0
Fixed
5.15.221
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.188
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.157
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.110
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.52
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.2.6

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-90378.json"