CVE-2026-98195

Source
https://cve.org/CVERecord?id=CVE-2026-98195
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-98195.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-98195
Downstream
Published
2026-10-06T08:44:34Z
Modified
2026-10-08T02:52:52Z
Summary
wifi: iwlegacy: fix broadcast stations deallocation
Details

In the Linux kernel, the following vulnerability has been resolved:

wifi: iwlegacy: fix broadcast stations deallocation

On the error path of __il4965_up(), il_dealloc_bcast_stations() clears only IL_STA_UCODE_ACTIVE, leaving IL_STA_BCAST set. This causes the same broadcast stations to be deallocated again by __il4965_down().

This can occur when RF_KILL is toggled during driver startup.

To fix clear the entire 'used' field, since we will not do any other operations on the station.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/98xxx/CVE-2026-98195.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
c2fd34469d1623111e3c3db65cde533f3bddc26e
Fixed
275d474a4b4bd4e73b18b1452f12e78806a8843a
Fixed
526fdd45548e22eee50ee1062abd88269d9f32e0
Fixed
c9a116d691364cd7f59d8329b395adcaf826d5c6
Fixed
85d847ff71fe736cbc15ada321256818e630e205
Fixed
1d84c2a3de449aceb94ed79eaefecdf1bedb6468
Fixed
55d34422c0d91436983028fd3c1546a1c2bee55f
Fixed
a9176fe666af1730cab92350f9c8cf67ebf14439
Fixed
b5526b780f8b297a76030410b96ba29153afb98f

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-98195.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
4.7.0
Fixed
5.10.271
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.222
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.189
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.158
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.112
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.54
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.2.8

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-98195.json"