{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","feed_url":"https://feed.craftedsignal.io/vendors/mediatek/feed.json","home_page_url":"https://feed.craftedsignal.io/","items":[{"_cs_actors":[],"_cs_cpes":[],"_cs_cves":[{"id":"CVE-2026-68310"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["mt7915"],"_cs_severities":["low"],"_cs_tags":["vulnerability","networking","informational"],"_cs_type":"advisory","_cs_vendors":["MediaTek"],"content_html":"\u003cp\u003eMicrosoft has disclosed CVE-2026-68310, a vulnerability affecting the MediaTek mt76 wireless driver stack, specifically impacting the mt7915 chipset. The flaw stems from improper handling and insufficient validation of High Efficiency (HE) capability lookups within the driver. An attacker capable of sending specially crafted wireless frames to an affected interface could trigger system instability or unauthorized memory access within the driver's execution context. This vulnerability is primarily a concern for environments utilizing MediaTek mt7915 hardware, as it resides within kernel-space driver code. While the disclosure identifies the flaw as a stability and memory safety issue, defenders should prioritize patching of the wireless stack to prevent potential exploitation for denial-of-service or remote code execution scenarios.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation of this vulnerability could result in kernel-level memory corruption or system crashes, leading to a denial-of-service condition for the affected wireless interface. Given the nature of the driver, impacts are most critical in environments where the mt7915 chipset handles high-traffic or public-facing wireless connectivity. There are no currently reported victim counts or specific sectoral targets, but the wide prevalence of MediaTek chipsets in consumer and enterprise networking hardware suggests a broad attack surface.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cp\u003eDetection engineering teams should focus on identifying abnormal kernel-space activity or driver crashes associated with wireless network stacks.\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eMonitor system logs for kernel panics or driver-related errors originating from the mt76 driver stack using local OS telemetry.\u003c/li\u003e\n\u003cli\u003ePatch affected systems by updating the wireless driver or firmware to the version provided by the hardware vendor to remediate the HE capability lookup logic.\u003c/li\u003e\n\u003cli\u003eReview network infrastructure configuration to restrict exposure of wireless management interfaces where feasible.\u003c/li\u003e\n\u003c/ul\u003e\n","date_modified":"2026-08-11T10:08:22Z","date_published":"2026-08-11T10:08:22Z","id":"https://feed.craftedsignal.io/briefs/2026-08-mt76-vulnerability/","summary":"CVE-2026-68310 in the MediaTek mt76 wireless driver for mt7915 chipsets allows for potential memory access issues due to inadequate validation during HE capability lookups.","title":"MediaTek mt76 Wireless Driver Memory Access Vulnerability","url":"https://feed.craftedsignal.io/briefs/2026-08-mt76-vulnerability/"},{"_cs_actors":[],"_cs_cpes":[],"_cs_cves":[{"id":"CVE-2026-68309"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["mt76"],"_cs_severities":["medium"],"_cs_tags":["vulnerability","denial-of-service","kernel","firmware","informational","product-news","linux"],"_cs_type":"advisory","_cs_vendors":["MediaTek"],"content_html":"\u003cp\u003eCVE-2026-68309 identifies a security vulnerability within the mt76 kernel driver used for MediaTek Wi-Fi chipsets. The issue is located in the \u003ccode\u003emt76_connac_mcu_uni_bss_he_tlv()\u003c/code\u003e function. A lack of proper validation when processing BSS HE (High Efficiency) TLV data structures can lead to a NULL pointer dereference. This flaw is triggered during the processing of wireless management frames or specific hardware communication packets. If exploited, an attacker capable of sending specially crafted frames to the affected wireless interface could cause the kernel to crash, resulting in a system denial-of-service. This vulnerability primarily affects devices utilizing the MediaTek mt76 driver stack, which is commonly found in Linux-based wireless network hardware.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation of this vulnerability results in kernel instability, typically manifesting as a system crash or hang. This denial-of-service condition affects the availability of the network interface and the host system. As the driver operates within the kernel space, this flaw poses a risk to devices ranging from embedded Wi-Fi access points to laptops and IoT devices relying on MediaTek chipsets for wireless connectivity.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003col\u003e\n\u003cli\u003ePatch the Linux kernel or firmware associated with MediaTek mt76 drivers to the version addressing CVE-2026-68309.\u003c/li\u003e\n\u003cli\u003eImplement kernel hardening measures, such as enabling PAN (Privileged Access Never) or SMAP (Supervisor Mode Access Prevention), to mitigate the impact of kernel-level pointer dereference vulnerabilities.\u003c/li\u003e\n\u003cli\u003eMonitor system logs for kernel oops or panic messages specifically referencing the mt76 driver during periods of high wireless traffic.\u003c/li\u003e\n\u003c/ol\u003e\n","date_modified":"2026-08-11T12:02:10Z","date_published":"2026-08-11T10:08:10Z","id":"https://feed.craftedsignal.io/briefs/2026-08-mt76-null-ptr/","summary":"A NULL pointer dereference vulnerability exists in the MediaTek mt76 driver within the mt76_connac_mcu_uni_bss_he_tlv function, potentially leading to kernel panic or denial-of-service conditions.","title":"NULL Pointer Dereference Vulnerability in MediaTek mt76 Wi-Fi Driver","url":"https://feed.craftedsignal.io/briefs/2026-08-mt76-null-ptr/"}],"language":"en","title":"CraftedSignal Threat Feed - MediaTek","version":"https://jsonfeed.org/version/1.1"}