CVE-2026-93796

LOWCVSS 7.0 · HIGH

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: pcie: null RX pointers after free When iwl_pcie_tx_init() fails after RX init, nic init unwinds via iwl_pcie_rx_free(). The freed RX members stayed non-NULL on the live transport object, so later teardown or retry could touch stale RX state. Set rx_pool, global_table, rxq, and alloc_page to NULL after free to make repeated cleanup and retry paths safe.

0.0/ 10 priority

Sources & remediation

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Threat summary

  • 2 mentions across 1 observed day

What's happening

  • 2 total mentions across 1 day

Deep dive

Activity timeline2 mentions / 1d
01122Mentions · 2026-09-24: 209-24
Referenced assets2 URLs
Full discourse2 posts
  • VulDB 🛡@vuldb

    The severity is increased for this new vulnerability affecting Linux Kernel (CVE-2026-93796) https://vuldb.com/vuln/409559

    00030150
    2.3K followersView on X
  • Pruva@pruvadev

    CVE-2026-93796: Linux kernel iwlwifi PCIe UAF/double-free — iwl pcie rx free leaves freed RX pointers rx pool, global table, rxq, alloc page non-NULL after free https://www.pruva.dev/reproductions/REPRO-2026-00373

    00100369
    52 followersView on X

Explore more