CVE-2024-36921: Linux Kernel

High severity, CVSS 7.8. EPSS: 0.3% chance of exploitation in the next 30 days.

In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mvm: guard against invalid STA ID on removal Guard against invalid station IDs in iwl_mvm_mld_rm_sta_id as that would result in out-of-bounds array accesses. This prevents issues should the driver get into a bad state during error handling.

Affected products

  • Linux Linux Kernel: before 6.6.31 (fixed in 6.6.31); from 6.7, before 6.8.10 (fixed in 6.8.10); version 6.9 only

Published 2024-05-30. Last modified 2026-08-04.