{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","feed_url":"https://feed.craftedsignal.io/products/mac80211/feed.json","home_page_url":"https://feed.craftedsignal.io/","items":[{"_cs_actors":[],"_cs_cpes":[],"_cs_cves":[{"cvss":8.8,"id":"CVE-2026-64117"}],"_cs_exploited":true,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["mac80211"],"_cs_severities":["medium"],"_cs_tags":["linux","vulnerability","kernel","wifi"],"_cs_type":"threat","_cs_vendors":[],"content_html":"\u003cp\u003eA vulnerability, identified as CVE-2026-64117, has been reported in the mac80211 Wi-Fi subsystem of the Linux kernel. This issue stems from incorrect handling during fast-RX rate processing and the reuse of the \u003ccode\u003eskb-\u0026gt;cb\u003c/code\u003e buffer within mesh networking environments. Such improper handling could lead to system instability, unexpected operational behavior, or the exposure of sensitive information residing in kernel memory. The disclosure of this vulnerability by Microsoft's Security Response Center indicates a potential risk for systems utilizing the affected Wi-Fi component. At present, the provided information details the vulnerability itself, but does not include specifics on active exploitation, identified threat actors, or specific attack campaigns leveraging this flaw.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation of CVE-2026-64117 could lead to various detrimental outcomes for affected Linux systems. Potential impacts include system instability, which may manifest as crashes (denial of service), or unauthorized information disclosure from kernel memory. The nature of the vulnerability, involving internal kernel buffer handling, suggests that an attacker might be able to craft malicious Wi-Fi traffic that triggers the flaw, leading to sensitive data leakage or disruption of wireless network operations on vulnerable devices. Specific details on the extent of information exposure or the ease of achieving denial of service are not provided in the disclosure.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003ePatch CVE-2026-64117 by applying the latest security updates for your Linux kernel and mac80211 Wi-Fi drivers as soon as they become available from your distribution vendor.\u003c/li\u003e\n\u003cli\u003eMonitor official Linux kernel security advisories and distribution-specific security updates for patches related to \u003ccode\u003eCVE-2026-64117\u003c/code\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n","date_modified":"2026-07-21T07:24:04Z","date_published":"2026-07-21T07:24:04Z","id":"https://feed.craftedsignal.io/briefs/2026-07-cve-2026-64117-linux-kernel-wifi-bug/","summary":"A vulnerability, CVE-2026-64117, has been disclosed in the Linux kernel's mac80211 Wi-Fi subsystem, potentially leading to unexpected behavior or information exposure due to incorrect handling of fast-RX rates and `skb-\u003ecb` buffer reuse in mesh networking contexts.","title":"CVE-2026-64117 Vulnerability in Linux Kernel mac80211 Wi-Fi Subsystem","url":"https://feed.craftedsignal.io/briefs/2026-07-cve-2026-64117-linux-kernel-wifi-bug/"}],"language":"en","title":"CraftedSignal Threat Feed - Mac80211","version":"https://jsonfeed.org/version/1.1"}