VYPR
High severity7.1NVD Advisory· Published May 8, 2026· Updated Jun 17, 2026

CVE-2026-43386

CVE-2026-43386

Description

In the Linux kernel, the following vulnerability has been resolved:

staging: rtl8723bs: fix potential out-of-bounds read in rtw_restruct_wmm_ie

The current code checks 'i + 5 < in_len' at the end of the if statement. However, it accesses 'in_ie[i + 5]' before that check, which can lead to an out-of-bounds read. Move the length check to the beginning of the conditional to ensure the index is within bounds before accessing the array.

Affected products

19

Patches

Vulnerability mechanics

References

8

News mentions

0

No linked articles in our index yet.