CVE-2026-68402
CVE-2026-68402: 1 tracked advisory record across Red Hat. Compare vendor sources and published fix guidance.
Compare the source-linked records below. Ratings and product/version details belong to each advisory; they are not a single CVE-wide score or proof that every listed product is affected. How VulniPulse collects and checks evidence.
Vendor advisory comparison
Red Hat
1 advisory- Advisory severityHigh7.0
High [CVE-2026-68402] Linux kernel: Wi-Fi subsystem out-of-bounds read via crafted frames
CVE-2026-68402Source published Source updated
In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: bound element ID read when checking non-inheritance cfg80211_is_element_inherited() reads the first data octet of the candidate element (id = elem->data[0]) to look it up in an extension non-inheritance list. It does so after testing elem->id, but without verifying that the element actually has a data octet. A zero-length extension element (WLAN_EID_EXTENSION with length 0) therefore makes it read one octet past the end of the element. _ieee802_11_parse_elems_full() runs this check for every element of a frame once a non-inheritance context exists -- e.g. while parsing a per-STA profile of a Multi-Link element in a (re)association response, or a non-transmitted BSS profile -- so a crafted frame from an AP…
- Affected products in this advisory
- Red Hat Enterprise Linux 9
- Red Hat Enterprise Linux 10
- Red Hat package: kernel-rt
- Source-reported affected versions
- Affected-version details not available in this record.
- Source-reported fixed versions
- kernel-0:5.14.0-687.47.1.el9_8
- RHSA-2026:67150
- Mitigation guidance
- To mitigate this issue, disable the Wi-Fi functionality if it is not required. This can be done by blacklisting the `cfg80211` kernel module. 1. Create a new file `/etc/modprobe.d/disable-wifi.conf` with the following content: ``` blacklist cfg80211 ``` 2. Rebuild the initial ramdisk: ```bash sudo dracut -f -v ``` 3. Reboot the system for the changes to take effect. This mitigation will prevent the `cfg80211` module, and thus Wi-Fi, from loading. This may impact network connectivity if Wi-Fi is the primary or only network interface.
Android app · Google Play
Monitor future Red Hat CVEs from your phone.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 34 official vendor sources and 160+ reviewed platform categories.