Executive brief
A locking error was identified in the Linux kernel's TI wlcore Wi-Fi driver. This flaw could allow a local user to cause a system crash or instability (denial of service) due to improper synchronization during power management operations. The issue has been resolved in recent kernel updates.
Technical details
A locking bug (CWE-667) was identified in 'drivers/net/wireless/ti/wlcore/main.c' within the Linux kernel. In the 'wl1271_op_resume' function, the code failed to acquire 'wl->mutex' before attempting to perform operations that required it, or attempted to unlock it without a prior lock. This race condition/synchronization error was detected by the Clang thread-safety analyzer. An attacker with local access could potentially trigger this flaw to cause a kernel panic or deadlock, resulting in a denial of service. Patches have been backported to multiple stable kernel branches including 5.10.y, 5.15.y, 6.1.y, and 6.6.y.
Affected products
- Linux Linux Kernel 4.19 to 6.18.17, 6.19 to 6.19.7, 7.0-rc1 to 7.0-rc7
Timeline
- 2026-04-03: disclosed
- 2026-03-03: patched: Initial patch committed to mainline kernel.
References
- https://git.kernel.org/stable/c/1a1c28a08d74716f3f8e3a21c86b30d0ff13521a
- https://git.kernel.org/stable/c/4ae8faf31b24c78653f4433298ee52813a56967a
- https://git.kernel.org/stable/c/5feeea59ed142e15c3284d0b1a364c6786bf3487
- https://git.kernel.org/stable/c/72c6df8f284b3a49812ce2ac136727ace70acc7c
- https://git.kernel.org/stable/c/7ab511003c5ae3bf5364d7699a2e3ab1db513680
- https://git.kernel.org/stable/c/aca4c9e4901b01b8b985993dc7df80bd1d1338bd
- https://git.kernel.org/stable/c/fc404390a386404cf9822d4091ccae1f61efcbcd