CVE-2026-53258

Source
https://cve.org/CVERecord?id=CVE-2026-53258
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-53258.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2026-53258
Downstream
Published
2026-06-25T08:39:47.917Z
Modified
2026-06-27T12:02:24.991936231Z
Summary
wifi: fix leak if split 6 GHz scanning fails
Details

In the Linux kernel, the following vulnerability has been resolved:

wifi: fix leak if split 6 GHz scanning fails

rdev->intscanreq is leaked if cfg80211_scan() fails. Note that it's supposed to be released at __cfg80211scandone() but this doesn't happen as rdev->scanreq is NULL at that point, too, leading to the early return from the freeing function.

unreferenced object 0xffff8881161d0800 (size 512): comm "wpasupplicant", pid 379, jiffies 4294749765 hex dump (first 32 bytes): 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 00 00 00 00 00 00 00 00 f0 81 13 16 81 88 ff ff ................ backtrace (crc c867fdb6): kmemleakalloc+0x89/0x90 __kmallocnoprof+0x2fd/0x410 cfg80211scan+0x133/0x730 nl80211_triggerscan+0xc69/0x1cc0 genlfamilyrcvmsgdoit+0x204/0x2f0 genlrcvmsg+0x431/0x6b0 netlinkrcvskb+0x143/0x3f0 genlrcv+0x27/0x40 netlinkunicast+0x4f6/0x820 netlinksendmsg+0x797/0xce0 __sock_sendmsg+0xc4/0x160 ____sys_sendmsg+0x5e4/0x890 ___sys_sendmsg+0xf8/0x180 __sys_sendmsg+0x136/0x1e0 __x64syssendmsg+0x76/0xc0 x64syscall+0x13f0/0x17d0

Found by Linux Verification Center (linuxtesting.org).

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/53xxx/CVE-2026-53258.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
c8cb5b854b40f2ce52ccd032fa19750f4181d5fc
Fixed
fb8db813eba2e56ee001c9fb5c2ce2cb78c42642
Fixed
a24134ddc18b4d440714365637d440b7121447b9
Fixed
e8694f7cc29287e843648d1075177b9a2000d957

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-53258.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.10.0
Fixed
6.18.36
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.0.13

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-53258.json"