Unrated severityNVD Advisory· Published Sep 24, 2026
CVE-2026-93802
CVE-2026-93802
Description
In the Linux kernel, the following vulnerability has been resolved:
wifi: rsi: validate beacon length before fixed buffer copy
rsi_prepare_beacon() copies the mac80211 beacon frame after FRAME_DESC_SZ into a management skb whose usable tailroom may be smaller than MAX_MGMT_PKT_SIZE after alignment.
Validate the beacon length against the actual tailroom before the copy and skb_put(). Leave ownership of the management skb with the caller on error, matching the existing rsi_send_beacon() cleanup path.
Affected products
1Patches
Vulnerability mechanics
References
3News mentions
0No linked articles in our index yet.