CVE-2026-23040: Linux

EPSS: 0.2% chance of exploitation in the next 30 days.

In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211_hwsim: fix typo in frequency notification The NAN notification is for 5745 MHz which corresponds to channel 149 and not 5475 which is not actually a valid channel. This could result in a NULL pointer dereference in cfg80211_next_nan_dw_notif.

Affected products

  • Linux Linux: from 6.18, before 6.18.6 (fixed in 6.18.6)

Published 2026-02-04. Last modified 2026-06-17.