CVE-2026-93789

Unknown

Last modified

CVE-2026-93789 is a vulnerability of currently unknown severity. In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: bound aligned TLV advance in FW parser Validate ALIGN(tlv_len, 4) against remaining parser length before consuming bytes from the firmware image. This avoids length underflow on malformed TLVs..

Description

In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: bound aligned TLV advance in FW parser Validate ALIGN(tlv_len, 4) against remaining parser length before consuming bytes from the firmware image. This avoids length underflow on malformed TLVs.

Affected Software

Source: CNA advisory (CVE.org). NVD analysis pending.

VendorProductVersions
LinuxLinux>= dd7a2509b3a79b290730a9c6a784bf03fedabb9a, < 528fa9eb14c209533ca26958b76da55e0ce239d8; >= dd7a2509b3a79b290730a9c6a784bf03fedabb9a, < 7aa9097623afb694bc25382a62e14d8e82bf002f; >= dd7a2509b3a79b290730a9c6a784bf03fedabb9a, < acad742714bdc70e7fd7f234323807c596828213
LinuxLinux2.6.35

References

Timeline

Published
Last Modified
Status
Received

Frequently Asked Questions

What is CVE-2026-93789?
In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: bound aligned TLV advance in FW parser Validate ALIGN(tlv_len, 4) against remaining parser length before consuming bytes from the firmware image. This avoids length underflow on malformed TLVs.
How severe is CVE-2026-93789?
Severity scoring for CVE-2026-93789 is pending analysis.
How do I fix CVE-2026-93789?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

How Strix Helps

Related CVEs from 2026

Are you affected by CVE-2026-93789?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST