MEDIUM

CVE-2026-53113

Linux Linux Kernel 2026-06-24 CVSS v3.1
CVSS
5.5

Description

In the Linux kernel, the following vulnerability has been resolved:

wifi: ath11k: fix memory leaks in beacon template setup

The functions ath11k_mac_setup_bcn_tmpl_ema() and
ath11k_mac_setup_bcn_tmpl_mbssid() allocate memory for beacon templates
but fail to free it when parameter setup returns an error.

Since beacon templates must be released during normal execution, they
must also be released in the error handling paths to prevent memory
leaks.

Fix this by using unified exit paths with proper cleanup in the respective
error paths.

Compile tested only. Issue found using a prototype static analysis tool
and code review.

Summary dbcve.org

Memory leaks exist in the ath11k WiFi driver beacon template setup functions (ath11k_mac_setup_bcn_tmpl_ema and ath11k_mac_setup_bcn_tmpl_mbssid) where allocated beacon template memory is not freed when parameter setup fails, causing resource exhaustion over time.

Mitigation

Apply the kernel patch to add proper cleanup code in error paths using unified exit paths with kfree() calls to release allocated beacon template memory before returning errors.

Patch Commit

Weakness (CWE)

CWE-401 Memory Leak

EPSS Score

0.12%
Probability of exploitation in next 30 days
2.2th percentile

References

View on dbcve.org
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.
Back to CVE