PatchSiren

PatchSiren cyber security CVE debrief

CVE-2026-80941 Linux CVE debrief

A memory leak vulnerability was found in the Linux kernel's rtw88 wifi driver, specifically in the rtw_txq_push_skb() function. The function does not free the skb when it fails, which can lead to a memory leak. This vulnerability requires patching to prevent potential denial-of-service. Linux kernel maintainers, Linux distribution vendors, and users of the affected rtw88 wifi driver should assess exposure and apply patches or mitigations as needed. The CVE record and NVD entry provide information about the vulnerability, but details about affected versions and exploitation are limited.

Vendor
Linux
Product
Unknown
CVSS
Unknown
CISA KEV
Not listed in stored evidence
Original CVE published
2026-09-11
Original CVE updated
2026-09-11
Advisory published
2026-09-11
Advisory updated
2026-09-11

Who should care

Linux kernel maintainers, Linux distribution vendors, and users of the affected rtw88 wifi driver should assess exposure and apply patches or mitigations as needed. The vulnerability requires patching to prevent potential denial-of-service. Evidence is limited, and further verification is required to determine affected versions and system exposure.

Why it matters

A memory leak vulnerability in the Linux kernel's rtw88 wifi driver requires patching to prevent potential denial-of-service. Linux kernel maintainers, Linux distribution vendors, and users of the affected rtw88 wifi driver should assess exposure and apply patches or mitigations as needed. Evidence is limited, and further verification is required to determine affected versions and system exposure.

  • Memory leak vulnerability requires patching to prevent potential denial-of-service.
  • Verification of affected versions and system exposure is necessary.

Technical summary

The rtw_txq_push_skb() function in the Linux kernel's rtw88 wifi driver does not free the skb when it fails, leading to a potential memory leak. This vulnerability requires patching to prevent potential denial-of-service. The Linux kernel maintainers have provided a patch for this vulnerability. Users of the affected rtw88 wifi driver should review and apply the patch as needed. The patch fixes the memory leak vulnerability in the rtw_txq_push_skb() function. The affected rtw88 wifi driver is used in various Linux kernel versions.

Defensive priority

Medium

Recommended defensive actions

  • Review and apply the patch provided by the Linux kernel maintainers.
  • Inventory checks for systems using the affected rtw88 wifi driver.
  • Monitoring for potential memory leak issues.
  • Review compensating controls for exposed systems while remediation is scheduled and verified.
  • Check relevant monitoring, detection, and logs for exposed assets that need extra review.
  • Track exceptions, retest remediated assets, and close the item only after evidence is documented.
  • Confirm whether affected product deployments exist in managed environments and assign an owner for follow-up.

Evidence notes

The CVE record and NVD entry provide information about the vulnerability, but details about affected versions and exploitation are limited. Evidence is limited, and further verification is required to determine affected versions and system exposure. The Linux kernel maintainers have provided a patch for this vulnerability. Users of the affected rtw88 wifi driver should review and apply the patch as needed.

Sources and references

Verified primary and authoritative sources

  • CVE-2026-80941 CVE Program record

    Publisher, destination, and source semantics verified

    URL: https://www.cve.org/CVERecord?id=CVE-2026-80941

    CVE Program - Official CVE Program record with source-provided CVE metadata.

  • CVE-2026-80941 NVD vulnerability detail

    Publisher, destination, and source semantics verified

    URL: https://nvd.nist.gov/vuln/detail/CVE-2026-80941

    NIST National Vulnerability Database - Official NIST NVD detail page and source-specific vulnerability assessment.

Supplemental references

  • Source reference

    Unverified legacy reference

    URL: https://git.kernel.org/stable/c/51d8b35574721cf3fe744f46ebd9629916063fee

    416baaa9-dc9f-4396-8d5f-8c081fb06d67

  • Source reference

    Unverified legacy reference

    URL: https://git.kernel.org/stable/c/6e95852f904edbabf411793093fcfd6f6d49ef27

    416baaa9-dc9f-4396-8d5f-8c081fb06d67

  • Source reference

    Unverified legacy reference

    URL: https://git.kernel.org/stable/c/7364713f0931ee45fdf0bea27103b40ccc94979a

    416baaa9-dc9f-4396-8d5f-8c081fb06d67

  • Source reference

    Unverified legacy reference

    URL: https://git.kernel.org/stable/c/9f2948010764d708bda27369d09ce6f194abe8e3

    416baaa9-dc9f-4396-8d5f-8c081fb06d67

Methodology and review provenance

AI-assisted synthesis based on stored public vulnerability evidence. System validation, approval state, and publication status do not by themselves establish human review of this revision. PatchSiren helps prioritize defensive review and does not prove exposure or remediation on any system.