CVE-2026-43110

Advisory lineage Upstream: 0 Downstream: 21
Modified
Published: 06 May 2026, 07:40
Last modified:01 Jun 2026, 16:14

Vulnerability Summary

Overall Risk (default)
medium
35/100
CVSS Score
8.8 HIGH
v3.1 (cve.org)
EPSS Score
0.24% LOW
0% probability 0.00%
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

06 May 2026, 07:40
Published
Vulnerability first disclosed
01 Jun 2026, 16:14
Last Modified
Vulnerability information updated

Description

In the Linux kernel, the following vulnerability has been resolved: wifi: brcmfmac: validate bsscfg indices in IF events brcmf_fweh_handle_if_event() validates the firmware-provided interface index before it touches drvr->iflist[], but it still uses the raw bsscfgidx field as an array index without a matching range check. Reject IF events whose bsscfg index does not fit in drvr->iflist[] before indexing the interface array. [add missing wifi prefix]

CVSS Metrics

  • v3.1HIGHScore: 8.8CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

EPSS Trends

Current EPSS score: 0.24% Percentile: 16%

Affected Systems

  • linuxlinux

    ≥ 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2, < 3ec7437e9d11374105c2c4e47ae671537729d7e6 | ≥ 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2, < 9fca68c2512a362cad258e4df12a307bb2ee4b8e | ≥ 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2, < 1ae1e1caa428844e481231f6dbe9b4f475f1d52d | ≥ 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2, < b427c2b05222db36d32ee141609de6128e9091bb | ≥ 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2, < 304950a467d83678bd0b0f46331882e2ac23b12d | ≥ 2880b86859967af710c72f7d34fb421a86a71e22, < b329fbcf075949a038045d8e9b86ae3d5bbd8a54 | ≥ 2880b86859967af710c72f7d34fb421a86a71e22, < 2ae3ccb78c0a9ef5ee3d80d02ab319ac1d5af734 | ≥ 2880b86859967af710c72f7d34fb421a86a71e22, < 9c81bcc2c695e0082012a2a3d36a0eefaa51579c | ≥ 2880b86859967af710c72f7d34fb421a86a71e22, < 3ec7437e9d11374105c2c4e47ae671537729d7e6 | ≥ 2880b86859967af710c72f7d34fb421a86a71e22, < 9fca68c2512a362cad258e4df12a307bb2ee4b8e | ≥ 2880b86859967af710c72f7d34fb421a86a71e22, < 1ae1e1caa428844e481231f6dbe9b4f475f1d52d | ≥ 2880b86859967af710c72f7d34fb421a86a71e22, < b427c2b05222db36d32ee141609de6128e9091bb | ≥ 2880b86859967af710c72f7d34fb421a86a71e22, < 304950a467d83678bd0b0f46331882e2ac23b12d | 3.9

  • linuxlinux kernel

    ≥ 3.9, < 6.6.136 | ≥ 6.7, < 6.12.83 | ≥ 6.13, < 6.18.24 | ≥ 6.19, < 6.19.14 | 7.0:rc1 | 7.0:rc2 | 7.0:rc3 | 7.0:rc4 | 7.0:rc5 | 7.0:rc6 | 7.0:rc7

References (8)