A vulnerability in the Linux kernel's mac80211 WiFi subsystem was identified where the function ieee80211_invoke_fast_rx() improperly declared a… (CVE-2026-46152)
A vulnerability in the Linux kernel's mac80211 WiFi subsystem was identified where the function ieee80211_invoke_fast_rx() improperly declared a per-invocation variable rx_result as static. This caused concurrent callers to share and overwrite the same instance, leading to incorrect packet processing. The issue was fixed by making rx_result an automatic variable to ensure each invocation maintains its own result. This vulnerability is tracked as CVE-2026-46152 and affects version 3.0 of the Linux kernel. Red Hat has issued security advisories providing patches for affected kernel packages. Systems must be updated and rebooted to apply the fix.
AI Analysis
Technical Summary
The Linux kernel vulnerability CVE-2026-46152 involves the mac80211 WiFi subsystem where ieee80211_invoke_fast_rx() declared its per-invocation rx_result variable as static, causing concurrent invocations to share the same instance. This concurrency issue could lead to packets being misrouted or mishandled between ieee80211_rx_mesh_data() and ieee80211_rx_8023(). The fix replaces the static declaration with an automatic variable to isolate each invocation's result. Red Hat advisories RHSA-2026:26427 and RHSA-2026:26428 provide patches for affected Red Hat Enterprise Linux 8 kernel and kernel-rt packages. The system must be rebooted after applying updates to mitigate this vulnerability.
Potential Impact
The vulnerability allows concurrent WiFi packet processing calls to overwrite each other's results, potentially causing packets to be incorrectly processed or dropped. This can lead to denial of service or data integrity issues in the network stack. The CVSS vector indicates high impact on confidentiality, integrity, and availability (CVE-2026-46152).
Mitigation Recommendations
A vendor-provided official fix is available via Red Hat security advisories RHSA-2026:26427 and RHSA-2026:26428. Users should apply the updated kernel packages provided in these advisories and reboot their systems to ensure the fix takes effect. No additional mitigation steps are required beyond applying the official patch and rebooting.
A vulnerability in the Linux kernel's mac80211 WiFi subsystem was identified where the function ieee80211_invoke_fast_rx() improperly declared a… (CVE-2026-46152)
Description
A vulnerability in the Linux kernel's mac80211 WiFi subsystem was identified where the function ieee80211_invoke_fast_rx() improperly declared a per-invocation variable rx_result as static. This caused concurrent callers to share and overwrite the same instance, leading to incorrect packet processing. The issue was fixed by making rx_result an automatic variable to ensure each invocation maintains its own result. This vulnerability is tracked as CVE-2026-46152 and affects version 3.0 of the Linux kernel. Red Hat has issued security advisories providing patches for affected kernel packages. Systems must be updated and rebooted to apply the fix.
CVSS v3.1
Score 8.8high
Affected software
Weaknesses
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
The Linux kernel vulnerability CVE-2026-46152 involves the mac80211 WiFi subsystem where ieee80211_invoke_fast_rx() declared its per-invocation rx_result variable as static, causing concurrent invocations to share the same instance. This concurrency issue could lead to packets being misrouted or mishandled between ieee80211_rx_mesh_data() and ieee80211_rx_8023(). The fix replaces the static declaration with an automatic variable to isolate each invocation's result. Red Hat advisories RHSA-2026:26427 and RHSA-2026:26428 provide patches for affected Red Hat Enterprise Linux 8 kernel and kernel-rt packages. The system must be rebooted after applying updates to mitigate this vulnerability.
Potential Impact
The vulnerability allows concurrent WiFi packet processing calls to overwrite each other's results, potentially causing packets to be incorrectly processed or dropped. This can lead to denial of service or data integrity issues in the network stack. The CVSS vector indicates high impact on confidentiality, integrity, and availability (CVE-2026-46152).
Mitigation Recommendations
A vendor-provided official fix is available via Red Hat security advisories RHSA-2026:26427 and RHSA-2026:26428. Users should apply the updated kernel packages provided in these advisories and reboot their systems to ensure the fix takes effect. No additional mitigation steps are required beyond applying the official patch and rebooting.
Technical Details
- Gcve Source
- db.gcve.eu
- Csaf Category
- csaf_vex
- Csaf Version
- 2.0
- Publisher
- Microsoft Security Response Center
- Advisory Id
- msrc_CVE-2026-46152
- Cve Count
- 1
- Additional Cves
- []
- Cvss Version
- 3.1
Threat ID: 6a19fecae29bf47b500fe264
Added to database: 05/29/2026, 21:02:02 UTC
Last enriched: 07/10/2026, 13:10:34 UTC
Last updated: 07/31/2026, 19:22:59 UTC
Views: 96
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.