In the Linux kernel, the following vulnerability has been resolved: wifi: rtw89: phy: check length before parsing PHY status IE Hardware might report PHY status IE with unexpected length, and parser might access out of range. Check the length ahead.
CVE-2026-97500
NONE
EPSS 0.15%
Updated Sep 28, 2026
Linux
https://git.kernel.org/stable/c/213f9e0ab2b4f35fe8d342333238c6cc91513fbf
416baaa9-dc9f-4396-8d5f-8c081fb06d67
https://git.kernel.org/stable/c/884495c39de1a02f42bd40051b921e2311d6ac91
416baaa9-dc9f-4396-8d5f-8c081fb06d67
https://git.kernel.org/stable/c/98e5720afd7495eece580238f232e3b3b4c022da
416baaa9-dc9f-4396-8d5f-8c081fb06d67
CVE Details
CVE ID
CVE-2026-97500
Published Date
Sep 24, 2026
Vendor
Linux
Severity
NONE
Exploit Prediction (EPSS)
Probability of Exploit
0.15%
Likelihood of exploitation in next 30 days
Percentile:
3.9th percentile (higher than 3.9% of all CVEs)
Standard patching cycle
Impact
Minimal impact
Source
View Advisory