CVE-2026-58374Disclosure(w1.fi / hostapd)

LOWCVSS 7.1 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

In hostapd before 2.12, a missing bounds check in AP-mode Wi-Fi 7 (IEEE 802.11be) Multi-Link Operation (MLO) association request processing allows an unauthenticated attacker within wireless range to send a crafted management frame containing a malformed Multi-Link Element or Per-STA Profile subelement. In hostapd_process_ml_assoc_req() in src/ap/ieee802_11_eht.c, the received link_id field can be parsed as value 15, but the corresponding links[] storage only has valid entries for lower link IDs (0 through 14). This causes an out-of-bounds write / small memory corruption during association processing before the 4-way handshake. The attack does not require network credentials, prior authentication, or user interaction. The confirmed practical impact is denial of service through hostapd process termination. This affects hostapd v2.11 and newer development snapshots before v2.12 when built with CONFIG_IEEE80211BE enabled. The issue is fixed in hostapd v2.12 and the upstream 2026-1 fixes.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-193

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • hostapd

Threat summary

  • 2 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 1 signal
  • Disclosure: 1 classified signal
  • General: 1 classified signal
  • Peaked 1d ago at 1 mentions (2026-07-05); latest day: 1
  • 2 total mentions across 2 days

Affected systems

Vendors
Products
hostapd

Deep dive

Activity timeline2 mentions / 2d
00111Mentions · 2026-07-05: 1Mentions · 2026-08-03: 1Technical Details · 2026-07-05: 107-0508-03
Signal classification2 categories
Disclosure
150.0%
General
150.0%
Referenced assets2 URLs
Classification over time
DateTotalLabels
2026-07-051
Disclosure1
2026-08-031
General1
Full discourse2 posts
  • mRr3b00t@UK_Daniel_Card
    General

    going back to my theory: is ur router vulnerable to CVE-2026-58374? how would you know? take for example this @GLiNetWiFi router: https://dl.gl-inet.com/router/be10000/stable the vulnerability was published: 06/30/2026 the last firmware update was: '2024-12-27' https://t.co/uy9A7iy2g2

    Post summary

    The post poses a question about CVE‑2026‑58374 for a specific router model, citing a firmware link and dates, but lacks any evidence of exploitation, PoC, patch, or technical detail.

    4301044.0K
    125.6K followersView on X
  • Open Source Security mailing list@oss_security
    Disclosure

    CVE-2026-58374: hostapd: OOB write in Wi-Fi 7 MLD association parsing (pre-auth DoS) https://www.openwall.com/lists/oss-security/2026/07/01/2

    Post summary

    The text announces a newly disclosed hostapd vulnerability (CVE‑2026‑58374) involving an out‑of‑bounds write during Wi‑Fi 7 MLD association parsing that can cause a pre‑authentication denial‑of‑service.

    020811.0K
    4.7K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appw1.fihostapd---

Explore more