THREAT OPS › Threat News › [NVD] CVE-2026-80933 (HIGH 7.8) — In the Linux kernel, the following vulnerability has been resolved:
wifi: mt76: mt7996: validate default EEPROM firmware size
The default EEPROM firmware is parsed and copied as a full EEPROM
without checking its length. A truncated file can make the driver
read beyond the firm
[NVD] CVE-2026-80933 (HIGH 7.8) — In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: validate default EEPROM firmware size The default EEPROM firmware is parsed and copied as a full EEPROM without checking its length. A truncated file can make the driver read beyond the firm
CVE-2026-80933 CVSS: 7.8 HIGH Published: 2026-09-11T20:18:57.160
In the Linux kernel, the following vulnerability has been resolved:
wifi: mt76: mt7996: validate default EEPROM firmware size
The default EEPROM firmware is parsed and copied as a full EEPROM without checking its length. A truncated file can make the driver read beyond the firmware buffer during variant validation or the fallback
Indicators of compromise
- CVE-2026-80933cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-80933