CVE-2026-98327
In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: mesh: reset the CSA state when leaving ifmsh->csa is allocated in ieee80211_mesh_csa_beacon() and only freed in ieee80211_mesh_finish_csa(), i.e. when the channel switch completes. Leaving the mesh while a switch is still pending therefore leaks it. Additionally, ifmsh->csa_role and ifmsh->chsw_ttl have their state leak in this case, so things can get mixed up in addition to the memory leak. Refactor the reset and call it in ieee80211_stop_mesh() to fix it all.
Affected versions
Linux kernel versions
3.13
and later are affected. Fixed in
6.12.112,
6.18.54,
7.2.8,
7.3-rc4
and their respective stable series.
References
4 totalFrequently asked questions
-
What is CVE-2026-98327?
CVE-2026-98327 is a unscored severity Linux kernel vulnerability . It affects Linux kernel versions from 3.13 onward and has been patched in 6.12.112, 6.18.54, 7.2.8 and others. CVE-2026-98327 has not been confirmed as actively exploited and is not listed in the CISA KEV catalog.
-
Is there a patch available for CVE-2026-98327?
Yes. CVE-2026-98327 has been patched. Fixed versions include 6.12.112, 6.18.54, 7.2.8 and others. If you are running Linux kernel 3.13 or later up to the fix versions, apply the relevant patch for your kernel branch.
-
Is CVE-2026-98327 actively exploited?
No. CVE-2026-98327 has not been confirmed as actively exploited. It is not listed in the CISA Known Exploited Vulnerabilities (KEV) catalog.