CVE-2026-80632 PUBLISHED

wifi: mt76: mt7996: Fix NULL pointer dereference in mt7996_init_tx_queues()

Assigner: Linux
Reserved: 26.08.2026 Published: 28.08.2026 Updated: 28.08.2026

In the Linux kernel, the following vulnerability has been resolved:

wifi: mt76: mt7996: Fix NULL pointer dereference in mt7996_init_tx_queues()

When MT76_NPU and CONFIG_NET_MEDIATEK_SOC_WED are enabled and mt76 detects properly the Airoha NPU SoC, mt7996_init_tx_queues() will dereference a NULL WED pointer. Fix the issue by always passing the WED pointer from mt7996_dma_init().

Product Status

Vendor Linux
Product Linux
Versions Default: unaffected
  • affected from cd7951f242a7e4114de8f41804d708f5b5079d53 to 93f3f9a9e955569ab7c3f02f0486d3aaf2314a56 (excl.)
  • affected from cd7951f242a7e4114de8f41804d708f5b5079d53 to 6794edb55b5f5ef834e03b0b241b1a8b725f82c0 (excl.)
Vendor Linux
Product Linux
Versions Default: affected
  • Version 7.1 is affected
  • unaffected from 0 to 7.1 (excl.)
  • unaffected from 7.1.5 to 7.1.* (incl.)
  • unaffected from 7.2 to * (incl.)

References