CVE-2025-40000

wifi: rtw89: fix use-after-free in rtw89_core_tx_kick_off_and_wait()

References

Notes

 carnil> Introduced in 1ae5ca615285 ("wifi: rtw89: add function to wait for completion
 carnil> of TX skbs"). Vulnerable versions: 6.4.

Bugs

Status

Branch Status
upstream released (6.18-rc1) [3e31a6bc07312b448fad3b45de578471f86f0e77]
6.18-upstream-stable N/A "Fixed before branching point"
6.17-upstream-stable released (6.17.1) [bdb3c41b358cf87d99e39d393e164f9e4a6088e6]
6.16-upstream-stable released (6.16.12) [f21f530b03b4b23448edb531a0cfea434cb76bb4]
6.12-upstream-stable released (6.12.52) [895cccf639ac015f3d5f993218cf098db82ac145]
6.6-upstream-stable needed
6.1-upstream-stable N/A "Vulnerable code not present"
5.10-upstream-stable N/A "Vulnerable code not present"
sid released (6.16.12-1)
6.12-trixie-security released (6.12.57-1)
6.1-bookworm-security N/A "Vulnerable code not present"
5.10-bullseye-security N/A "Vulnerable code not present"