Upstream information

CVE-2026-43110 at MITRE

Description

In the Linux kernel, the following vulnerability has been resolved:

wifi: brcmfmac: validate bsscfg indices in IF events

brcmf_fweh_handle_if_event() validates the firmware-provided interface
index before it touches drvr->iflist[], but it still uses the raw
bsscfgidx field as an array index without a matching range check.

Reject IF events whose bsscfg index does not fit in drvr->iflist[]
before indexing the interface array.

[add missing wifi prefix]

SUSE information

Overall state of this security issue: Does not affect SUSE products

SUSE Bugzilla entry: 1264482 [NEW]

No SUSE Security Announcements cross referenced.


SUSE Timeline for this CVE

CVE page created: Wed May 6 12:26:01 2026
CVE page last modified: Fri May 8 12:08:59 2026