CVE-2026-23420

Source
https://cve.org/CVERecord?id=CVE-2026-23420
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-23420.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2026-23420
Downstream
Related
Published
2026-04-03T13:24:29.681Z
Modified
2026-06-04T09:14:29.999816274Z
Summary
wifi: wlcore: Fix a locking bug
Details

In the Linux kernel, the following vulnerability has been resolved:

wifi: wlcore: Fix a locking bug

Make sure that wl->mutex is locked before it is unlocked. This has been detected by the Clang thread-safety analyzer.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/23xxx/CVE-2026-23420.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
45aa7f071b06c8481afed4c7b93e07c9584741e8
Fixed
4ae8faf31b24c78653f4433298ee52813a56967a
Fixed
fc404390a386404cf9822d4091ccae1f61efcbcd
Fixed
7ab511003c5ae3bf5364d7699a2e3ab1db513680
Fixed
aca4c9e4901b01b8b985993dc7df80bd1d1338bd
Fixed
5feeea59ed142e15c3284d0b1a364c6786bf3487
Fixed
fcef983ad88832f3aa83491a174c345de57afbbd
Fixed
1a1c28a08d74716f3f8e3a21c86b30d0ff13521a
Fixed
72c6df8f284b3a49812ce2ac136727ace70acc7c

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-23420.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
4.19.0
Fixed
5.10.253
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.203
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.167
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.130
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.77
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.17
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
6.19.7

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-23420.json"