# CVE-2025-39862

## Summary

- **CVE ID:** CVE-2025-39862
- **Severity:** HIGH
- **CVSS Score:** 8.8 (CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H)
- **CWE:** N/A
- **Published:** Sep 19, 2025
- **Last Modified:** Sep 14, 2026

## Description

In the Linux kernel, the following vulnerability has been resolved:

wifi: mt76: mt7915: fix list corruption after hardware restart

Since stations are recreated from scratch, all lists that wcids are added
to must be cleared before calling ieee80211_restart_hw.
Set wcid->sta = 0 for each wcid entry in order to ensure that they are
not added again before they are ready.

## Affected Products

- Linux — Linux (8a55712d124fd8a919e8a69b70643e1a97280b4b)
- Linux — Linux (6.2)
- Linux — Linux (0)
- Linux — Linux (6.16.6)
- Linux — Linux (6.17)
- Linux — Linux (3a931ebf67b89316c3b5bed2dca4479dd6f85803)
- Linux — Linux (6.1.188)

## References

- [CNA](https://git.kernel.org/stable/c/8fa8eb52bc2eb08d93202863b5fc478e0bebc00c)
- [CNA](https://git.kernel.org/stable/c/065c79df595af21d6d1b27d642860faa1d938774)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.19%
- **EPSS Percentile:** 8.9

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-19._