CVE-2026-98351
Received Received - Intake

Memory Leak in Linux Kernel Virt_Wifi Driver

Vulnerability report for CVE-2026-98351, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-10-06

Last updated on: 2026-10-06

Assigner: kernel.org

Description

In the Linux kernel, the following vulnerability has been resolved: wifi: virt_wifi: free skb when disconnected When the simulated link is disconnected, virt_wifi_start_xmit() returns NET_XMIT_DROP without freeing the skb. dev_hard_start_xmit() treats this return value as consumed, so every packet sent while disconnected leaks its skb. Free the skb before returning the drop status.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-10-06
Last Modified
2026-10-06
Generated
2026-10-06
AI Q&A
2026-10-06
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 9 associated CPEs
Vendor Product Version / Range
Linux Linux 5.0
Linux Linux c7cdba31ed8b87526db978976392802d3f93110c
Linux Linux c7cdba31ed8b87526db978976392802d3f93110c
Linux Linux c7cdba31ed8b87526db978976392802d3f93110c
Linux Linux c7cdba31ed8b87526db978976392802d3f93110c
Linux Linux c7cdba31ed8b87526db978976392802d3f93110c
Linux Linux c7cdba31ed8b87526db978976392802d3f93110c
Linux Linux c7cdba31ed8b87526db978976392802d3f93110c
Linux Linux c7cdba31ed8b87526db978976392802d3f93110c

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-UNKNOWN

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This vulnerability affects the Linux kernel's virt_wifi driver. When the simulated Wi-Fi link is disconnected, the driver fails to free network packet buffers (skb) before returning an error. This causes memory leaks as each transmitted packet consumes memory that is never released.

Detection Guidance

This vulnerability involves memory leaks in the Linux kernel's virt_wifi driver when the simulated link is disconnected. Detection requires checking for memory leaks or skb (socket buffer) leaks in the virt_wifi module. Monitor kernel logs for errors related to virt_wifi or skb allocation failures. Use commands like 'dmesg | grep virt_wifi' to check for related errors. Check memory usage with 'cat /proc/meminfo' or 'free -m' for unusual increases.

Impact Analysis

The vulnerability can lead to memory exhaustion on systems using virt_wifi. This may cause system slowdowns, crashes, or denial of service if memory is depleted over time due to unmanaged packet buffers.

Mitigation Strategies

Immediate mitigation involves updating the Linux kernel to a patched version where this issue is resolved. Check your distribution's updates or apply the kernel patch from the Linux kernel source. If updating is not immediately possible, disable the virt_wifi module by running 'sudo modprobe -r virt_wifi' to prevent exploitation until a patch is applied.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-98351. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart