CVE-2023-54141
Linux Kernel vulnerability analysis and mitigation

Overview

CVE-2023-54141 is a NULL pointer dereference vulnerability in the Linux kernel's ath11k Wi-Fi driver, specifically affecting the IPQ5018 hardware platform. The flaw arises because the hw_ops->get_ring_selector() function pointer is not initialized for IPQ5018, causing a kernel panic when data transmission is attempted after clients connect. It was published on December 24, 2025, and affects the Linux kernel's ath11k module. The CVSS score and severity rating have not been publicly assigned at this time (Feedly, CVE.org).

Technical details

The root cause is a missing initialization of the hw_ops->get_ring_selector() function pointer for the IPQ5018 Wi-Fi chipset in the Linux kernel's ath11k driver (CWE-476: NULL Pointer Dereference). When a wireless client connects and data transmission begins, the kernel calls hw_ops->get_ring_selector() via ath11k_dp_tx(), but since the pointer is NULL for IPQ5018, a kernel NULL pointer dereference occurs at virtual address 0x00000000. The crash trace shows the call chain: ath11k_dp_txath11k_mac_op_txieee80211_handle_wake_tx_queueieee80211_tx_prepare_skb__ieee80211_subif_start_xmit. The fix involves adding the missing hw_ops->get_ring_selector() implementation for IPQ5018 (Feedly, kernel.org patch 1).

Impact

Successful triggering of this vulnerability causes a kernel panic (system crash), resulting in a complete denial of service on affected devices running Linux with the ath11k driver on IPQ5018 hardware. The crash is triggered locally or by any wireless client connecting and sending data, making it exploitable in any environment where IPQ5018-based access points or routers are deployed. There is no evidence of confidentiality or integrity impact; the primary consequence is availability loss (Feedly).

Mitigation and workarounds

The fix is to apply the upstream Linux kernel patch that adds the missing hw_ops->get_ring_selector() for IPQ5018 in the ath11k driver. Three patch commits have been identified: c36289e, ce282d8, and d1992d7. Administrators running Linux on IPQ5018-based hardware (e.g., routers or access points using Qualcomm IPQ5018 SoCs) should update to a patched kernel version as soon as one is available from their distribution or vendor. As a temporary workaround, disabling the ath11k module or preventing wireless client associations on affected hardware can prevent the crash (Feedly).

Additional resources


SourceThis report was generated using AI

Related Linux Kernel vulnerabilities:

CVE ID

Severity

Score

Technologies

Component name

CISA KEV exploit

Has fix

Published date

CVE-2026-64557NONEN/A
  • Linux Kernel logoLinux Kernel
  • kernel-rt-selftests-internal
NoNoJul 29, 2026
CVE-2026-64556NONEN/A
  • Linux Kernel logoLinux Kernel
  • kernel-64k-devel
NoNoJul 29, 2026
CVE-2026-64555NONEN/A
  • Linux Kernel logoLinux Kernel
  • linux-azure-fde-6.14
NoNoJul 27, 2026
CVE-2026-64554NONEN/A
  • Linux Kernel logoLinux Kernel
  • linux-gcp-6.14
NoYesJul 27, 2026
CVE-2026-64553NONEN/A
  • Linux Kernel logoLinux Kernel
  • kernel-rt-64k-debug-modules-internal
NoYesJul 27, 2026

Free Vulnerability Assessment

Benchmark your Cloud Security Posture

Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.

Request assessment

Get a personalized demo

Ready to see Wiz in action?

"Best User Experience I have ever seen, provides full visibility to cloud workloads."
David EstlickCISO
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
Adam FletcherChief Security Officer
"We know that if Wiz identifies something as critical, it actually is."
Greg PoniatowskiHead of Threat and Vulnerability Management