CVE-2025-39957

Source
https://cve.org/CVERecord?id=CVE-2025-39957
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-39957.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2025-39957
Downstream
Related
Published
2025-10-09T09:47:34.933Z
Modified
2026-03-20T12:43:06.892119Z
Summary
wifi: mac80211: increase scan_ies_len for S1G
Details

In the Linux kernel, the following vulnerability has been resolved:

wifi: mac80211: increase scanieslen for S1G

Currently the S1G capability element is not taken into account for the scanieslen, which leads to a buffer length validation failure in ieee80211prephw_scan() and subsequent WARN in __ieee80211startscan(). This prevents hw scanning from functioning. To fix ensure we accommodate for the S1G capability length.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/39xxx/CVE-2025-39957.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
0333a81bc83431d7f90391d38aa09e856c5e5b25
Fixed
93e063f15e17acb8cd6ac90c8f0802c2624e1a74
Fixed
32adb020b0c32939da1322dcc87fc0ae2bc935d1
Fixed
0dbad5f5549e54ac269cc04ce89f212892a98cab
Fixed
7e2f3213e85eba00acb4cfe6d71647892d63c3a1

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-39957.json"