Answer in brief
CVE-2026-68355 records a Unknown severity vulnerability in wifi: ath11k: fix potential buffer underflow in ath11k_hal_rx_msdu_list_get(). The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=d5c65159f2895379e11ca13f62feabe93278985d <69a6a4f60b2da92c0bdfd9264b8ffe053f51f52a || >=d5c65159f2895379e11ca13f62feabe93278985d <904367381a922aa2dc3e8bd2488e6c9180516c7a || >=d5c65159f2895379e11ca13f62feabe93278985d <a154ca3c441a67d36b3a9ea63a4f11b06abe6223 || >=d5c65159f2895379e11ca13f62feabe93278985d <725c1c3a8c5d920a7d3f5887412f2ad8e95a74f5 || >=d5c65159f2895379e11ca13f62feabe93278985d <7f11e70629650ff6ea140984e5ce188b775b2683 | 69a6a4f60b2da92c0bdfd9264b8ffe053f51f52a, 904367381a922aa2dc3e8bd2488e6c9180516c7a, a154ca3c441a67d36b3a9ea63a4f11b06abe6223, 725c1c3a8c5d920a7d3f5887412f2ad8e95a74f5, 7f11e70629650ff6ea140984e5ce188b775b2683 |
| Linux/Linuxgeneric | 5.6 | Not reported |
Published upstream
Aug 10, 2026
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 10, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 10, 2026
In the Linux kernel, the following vulnerability has been resolved: wifi: ath11k: fix potential buffer underflow in ath11k_hal_rx_msdu_list_get() When the first entry in msdu_details has a zero buffer address, the code accesses msdu_details[i - 1] with i == 0, causing a buffer underflow. Fix similarly to ath12k_wifi7_hal_rx_msdu_list_get() by adding a separate check for i == 0 before the main condition to prevent the out-of-bounds access. Found by Linux Verification Center (linuxtesting.org) with SVACE.
Quoted source text, attributed separately from HOL analysis.
Answer in brief
CVE-2026-68355 records a Unknown severity vulnerability in wifi: ath11k: fix potential buffer underflow in ath11k_hal_rx_msdu_list_get(). The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=d5c65159f2895379e11ca13f62feabe93278985d <69a6a4f60b2da92c0bdfd9264b8ffe053f51f52a || >=d5c65159f2895379e11ca13f62feabe93278985d <904367381a922aa2dc3e8bd2488e6c9180516c7a || >=d5c65159f2895379e11ca13f62feabe93278985d <a154ca3c441a67d36b3a9ea63a4f11b06abe6223 || >=d5c65159f2895379e11ca13f62feabe93278985d <725c1c3a8c5d920a7d3f5887412f2ad8e95a74f5 || >=d5c65159f2895379e11ca13f62feabe93278985d <7f11e70629650ff6ea140984e5ce188b775b2683 | 69a6a4f60b2da92c0bdfd9264b8ffe053f51f52a, 904367381a922aa2dc3e8bd2488e6c9180516c7a, a154ca3c441a67d36b3a9ea63a4f11b06abe6223, 725c1c3a8c5d920a7d3f5887412f2ad8e95a74f5, 7f11e70629650ff6ea140984e5ce188b775b2683 |
| Linux/Linuxgeneric | 5.6 | Not reported |
Published upstream
Aug 10, 2026
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 10, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 10, 2026
In the Linux kernel, the following vulnerability has been resolved: wifi: ath11k: fix potential buffer underflow in ath11k_hal_rx_msdu_list_get() When the first entry in msdu_details has a zero buffer address, the code accesses msdu_details[i - 1] with i == 0, causing a buffer underflow. Fix similarly to ath12k_wifi7_hal_rx_msdu_list_get() by adding a separate check for i == 0 before the main condition to prevent the out-of-bounds access. Found by Linux Verification Center (linuxtesting.org) with SVACE.
Quoted source text, attributed separately from HOL analysis.