THREATOPS
THREAT OPSThreat News › [NVD] CVE-2026-74407 (HIGH 8.8) — In the Linux kernel, the following vulnerability has been resolved: wifi: ath11k: cancel SSR work items during PCI shutdown A reboot can crash the kernel if it overlaps with WLAN firmware crash recovery (SSR). The crash is a NULL pointer dereference in the MHI teardown path whi

[NVD] CVE-2026-74407 (HIGH 8.8) — In the Linux kernel, the following vulnerability has been resolved: wifi: ath11k: cancel SSR work items during PCI shutdown A reboot can crash the kernel if it overlaps with WLAN firmware crash recovery (SSR). The crash is a NULL pointer dereference in the MHI teardown path whi

lownvdPublished 2026-08-15

CVE-2026-74407 CVSS: 8.8 HIGH Published: 2026-08-15T06:22:42.737

In the Linux kernel, the following vulnerability has been resolved:

wifi: ath11k: cancel SSR work items during PCI shutdown

A reboot can crash the kernel if it overlaps with WLAN firmware crash recovery (SSR). The crash is a NULL pointer dereference in the MHI teardown path while freeing DMA-backed MHI contexts.

Simplified trace:

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-74407