CVE-2025-38644

Source
https://cve.org/CVERecord?id=CVE-2025-38644
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-38644.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2025-38644
Downstream
Related
Published
2025-08-22T16:00:49.899Z
Modified
2026-05-07T04:18:38.578891Z
Summary
wifi: mac80211: reject TDLS operations when station is not associated
Details

In the Linux kernel, the following vulnerability has been resolved:

wifi: mac80211: reject TDLS operations when station is not associated

syzbot triggered a WARN in ieee80211tdlsoper() by sending NL80211TDLSENABLELINK immediately after NL80211CMD_CONNECT, before association completed and without prior TDLS setup.

This left internal state like sdata->u.mgd.tdlspeer uninitialized, leading to a WARNON() in code paths that assumed it was valid.

Reject the operation early if not in station mode or not associated.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/38xxx/CVE-2025-38644.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
81dd2b8822410e56048b927be779d95a2b6dc186
Fixed
0c84204cf0bbe89e454a5caccc6a908bc7db1542
Fixed
378ae9ccaea3f445838a087962a067b5cb2e8577
Fixed
af72badd5ee423eb16f6ad7fe0a62f1b4252d848
Fixed
4df663d4c1ca386dcab2f743dfc9f0cc07aef73c
Fixed
31af06b574394530f68a4310c45ecbe2f68853c4
Fixed
16ecdab5446f15a61ec88eb0d23d25d009821db0

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-38644.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
3.17.0
Fixed
6.1.148
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.102
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.42
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.15.10
Type
ECOSYSTEM
Events
Introduced
6.16.0
Fixed
6.16.1

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-38644.json"