CVE-2026-98325: wifi: mac80211: set up the TX info early to fix failure paths
In the Linux kernel, the following vulnerability has been resolved:
wifi: mac80211: set up the TX info early to fix failure paths
The previous commit 2c51457d930f ("wifi: mac80211: free ack status frame on TX header build failure") cleaned up the leak, but still left the code a bit messy and the failed SKB didn't get reported to userspace.
Fix this up by initialising skb->cb[] earlier, which allows using ieee80211freetxskb() and therefore reports it for the failure in ieee80211buildhdr(), and unifies the ieee80211skbresize() failure path with it.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Compensating control
Initialize skb->cb[] and set up the TX info earlier in the mac80211 TX path so failed SKBs can be reported through ieee80211_free_txskb(), including failures in ieee80211_build_hdr().