Description
In the Linux kernel, the following vulnerability has been resolved:

wifi: ath12k: do WoW offloads only on primary link

In case of multi-link connection, WCN7850 firmware crashes due to WoW
offloads enabled on both primary and secondary links.

Change to do it only on primary link to fix it.

Tested-on: WCN7850 hw2.0 PCI WLAN.HMT.1.1.c5-00284-QCAHMTSWPL_V1.0_V2.0_SILICONZ-1
Published: 2026-06-03
Score: 7.8 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The ath12k driver in the Linux kernel contains a flaw that allows Wake on Wireless (WoW) offloads to be enabled simultaneously on both the primary and secondary links of a multi‑link configuration. When this occurs on a device running the WCN7850 firmware, the firmware crashes, resulting in a local denial‑of‑service that interrupts wireless connectivity. The defect does not provide code‑execution or data‑exfiltration paths; it simply causes a crash due to improper handling of WoW offloads in a multi‑link context.

Affected Systems

Systems that run the Linux kernel with any version of the ath12k driver prior to the commit that limits WoW offloads to the primary link are affected. The issue is tied to the WCN7850 hardware, specifically firmware build WCN7850 hw2.0 PCI WLAN.HMT.1.1.c5-00284-QCAHMTSWPL_V1.0_V2.0_SILICONZ-1, in environments where multi‑link mode is enabled. Other Linux kernels that use ath12k but have the patched driver or that use firmware without dual WoW offload support are not impacted.

Risk and Exploitability

The CVSS score is 7.8, and the EPSS score is less than 1%; the vulnerability is also not listed in CISA’s KEV catalog. These indicators suggest a relatively low overall exploitation probability. An attacker would need the ability to control firmware settings or trigger the driver into multi‑link mode, which may be limited to local or privileged users or specialized network conditions. The impact is purely availability, with no direct route to remote code execution or confidentiality compromise.

Generated by OpenCVE AI on June 9, 2026 at 22:24 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Update the Linux kernel to a version that includes the ath12k WoW offload fix referenced in the kernel commit logs.
  • Apply the latest WCN7850 firmware update that implements the same limitation on WoW offloads.
  • If an immediate kernel or firmware upgrade is not possible, disable WoW offloads on the secondary link or disable the multi‑link feature entirely until the patch is available.

Generated by OpenCVE AI on June 9, 2026 at 22:24 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 09 Jun 2026 20:00:00 +0000

Type Values Removed Values Added
Weaknesses NVD-CWE-noinfo

Fri, 05 Jun 2026 06:45:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 5.5, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H'}

cvssV3_1

{'score': 7.8, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'}


Thu, 04 Jun 2026 00:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-372
References
Metrics threat_severity

None

cvssV3_1

{'score': 5.5, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H'}

threat_severity

Low


Wed, 03 Jun 2026 17:45:00 +0000

Type Values Removed Values Added
Description In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: do WoW offloads only on primary link In case of multi-link connection, WCN7850 firmware crashes due to WoW offloads enabled on both primary and secondary links. Change to do it only on primary link to fix it. Tested-on: WCN7850 hw2.0 PCI WLAN.HMT.1.1.c5-00284-QCAHMTSWPL_V1.0_V2.0_SILICONZ-1
Title wifi: ath12k: do WoW offloads only on primary link
First Time appeared Linux
Linux linux Kernel
CPEs cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Vendors & Products Linux
Linux linux Kernel
References

Subscriptions

Linux Linux Kernel
cve-icon MITRE

Status: PUBLISHED

Assigner: Linux

Published:

Updated: 2026-06-05T06:06:44.560Z

Reserved: 2026-05-13T15:03:33.109Z

Link: CVE-2026-46271

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2026-06-03T18:16:28.897

Modified: 2026-06-09T19:52:32.863

Link: CVE-2026-46271

cve-icon Redhat

Severity : Low

Publid Date: 2026-06-03T00:00:00Z

Links: CVE-2026-46271 - Bugzilla

cve-icon OpenCVE Enrichment

Updated: 2026-06-09T22:30:14Z

Weaknesses