CVE-2025-68738: Linux
EPSS: 0.2% chance of exploitation in the next 30 days.
In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: fix null pointer deref in mt7996_conf_tx() If a link does not have an assigned channel yet, mt7996_vif_link returns NULL. We still need to store the updated queue settings in that case, and apply them later. Move the location of the queue params to within struct mt7996_vif_link.
Affected products
- Linux Linux: from 6.14, before 6.17.13 (fixed in 6.17.13); from 6.18, before 6.18.2 (fixed in 6.18.2)
Published 2025-12-24. Last modified 2026-06-17.