---
id: CVE-2026-97517
title: |-
  In the Linux kernel, the following vulnerability has been resolved:

  wifi: nl80211: reject beacons with bad HE operation

  The HE operation element not only needs to be longer than
  the fixed part, but also have an appropriate size for the…
summary: |-
  In the Linux kernel, the following vulnerability has been resolved:

  wifi: nl80211: reject beacons with bad HE operation

  The HE operation element not only needs to be longer than
  the fixed part, but also have an appropriate size for the…
severity: none
vendor: Linux
product: Linux
affected:
  - >-
    Linux >= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 <
    6c4bb5450b9d9111faaaba581ea45a3a79844e50
  - >-
    Linux >= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 <
    0d635f0b4a634eb599ed13a87ece0b5f129f9900
  - >-
    Linux >= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 <
    8b9a100e1a76c52988b31099b349fd95a58c8768
  - Linux < 6.12.111
  - Linux < 6.18.53
  - Linux (all versions)
published: '2026-09-24'
updated: '2026-09-24'
sourceUpdated: '2026-09-24T17:17:29.670'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-97517'
references:
  - url: 'https://git.kernel.org/stable/c/0d635f0b4a634eb599ed13a87ece0b5f129f9900'
    label: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
  - url: 'https://git.kernel.org/stable/c/6c4bb5450b9d9111faaaba581ea45a3a79844e50'
    label: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
  - url: 'https://git.kernel.org/stable/c/8b9a100e1a76c52988b31099b349fd95a58c8768'
    label: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
tags:
  - nvd
  - cve.org
ingestedAt: '2026-09-24T16:47:15.858Z'
---

## Overview

In the Linux kernel, the following vulnerability has been resolved:

wifi: nl80211: reject beacons with bad HE operation

The HE operation element not only needs to be longer than
the fixed part, but also have an appropriate size for the
variable part inside of it. Check this.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
