CVE-2025-71227 PUBLISHED

wifi: mac80211: don't WARN for connections on invalid channels

Assigner: Linux
Reserved: 14.02.2026 Published: 18.02.2026 Updated: 18.02.2026

In the Linux kernel, the following vulnerability has been resolved:

wifi: mac80211: don't WARN for connections on invalid channels

It's not clear (to me) how exactly syzbot managed to hit this, but it seems conceivable that e.g. regulatory changed and has disabled a channel between scanning (channel is checked to be usable by cfg80211_get_ies_channel_number) and connecting on the channel later.

With one scenario that isn't covered elsewhere described above, the warning isn't good, replace it with a (more informative) error message.

Product Status

Vendor Linux
Product Linux
Versions Default: unaffected
  • affected from 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 to 10d3ff7e5812c8d70300f6fa8f524009a06aa7e1 (excl.)
  • affected from 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 to 99067b58a408a384d2a45c105eb3dce980a862ce (excl.)
Vendor Linux
Product Linux
Versions Default: affected
  • unaffected from 6.18.10 to 6.18.* (incl.)
  • unaffected from 6.19 to * (incl.)

References