CVE-2026-14366 | Zephyrproject Zephyr up to 4.4.1 Transmit Callback siwx91x_wifi.c siwx91x_send pkt use after free

SecurityVulns

A vulnerability described as very critical has been identified in Zephyrproject Zephyr up to 4.4.1. This affects the function siwx91x_send of the file drivers/wifi/siwx91x/siwx91x_wifi.c of the component Transmit Callback. Such manipulation of the argument pkt leads to use after free.

This vulnerability is listed as CVE-2026-14366. The attack may be performed from remote. There is no available exploit.

Upgrading the affected component is recommended.VulDB Recent EntriesRead More