CVE-2025-38343 – “MT7996 WiFi Multicast Broadcast RA Fragment Dropper Vulnerability”

The following table lists the changes that have been made to the
CVE-2025-38343 vulnerability over time.

Vulnerability history details can be useful for understanding the evolution
of a vulnerability, and for identifying the most recent changes that may
impact the vulnerability’s severity, exploitability, or other characteristics.

  • New CVE Received
    by 416baaa9-dc9f-4396-8d5f-8c081fb06d67

    Jul. 10, 2025

    Action Type Old Value New Value
    Added Description In the Linux kernel, the following vulnerability has been resolved:

    wifi: mt76: mt7996: drop fragments with multicast or broadcast RA

    IEEE 802.11 fragmentation can only be applied to unicast frames.
    Therefore, drop fragments with multicast or broadcast RA. This patch
    addresses vulnerabilities such as CVE-2020-26145.

    Added Reference https://git.kernel.org/stable/c/24900688ee47071aa6a61e78473999b5b80f0423
    Added Reference https://git.kernel.org/stable/c/5fd5b8132b5de08c99eea003f7715ff2e361b007
    Added Reference https://git.kernel.org/stable/c/80fda1cd7b0a1edd0849dc71403a070d0922118d
    Added Reference https://git.kernel.org/stable/c/d4b93f9c2f666011dcf810050ef60a6b8d06f186
Share the Post:

Related Posts