VulnerabilityModified
CVE-2025-38343
In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: drop fragments with multicast or broadcast RA IEEE 802.11 fragmentation can only be applied to unicast frames.
MEDIUM 5.5EPSS 0.22%
Does this matter?
Lower severity and a low EPSS score (0.22%). Track it; it rarely justifies an emergency change on its own.
Description
In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: drop fragments with multicast or broadcast RA IEEE 802.11 fragmentation can only be applied to unicast frames. Therefore, drop fragments with multicast or broadcast RA. This patch addresses vulnerabilities such as CVE-2020-26145.
- CVSS 3.1
- 5.5 MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
- EPSS
- 0.22% probability · 13th percentile
- CISA KEV
- Not listed
- Affected
- linux/linux kernel
- Source
- 416baaa9-dc9f-4396-8d5f-8c081fb06d67
References
- https://git.kernel.org/stable/c/24900688ee47071aa6a61e78473999b5b80f0423Patch
- https://git.kernel.org/stable/c/5fd5b8132b5de08c99eea003f7715ff2e361b007Patch
- https://git.kernel.org/stable/c/80fda1cd7b0a1edd0849dc71403a070d0922118dPatch
- https://git.kernel.org/stable/c/d4b93f9c2f666011dcf810050ef60a6b8d06f186Patch
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.