| Name | CVE-2025-38157 | 
| Description | In the Linux kernel, the following vulnerability has been resolved:  wifi: ath9k_htc: Abort software beacon handling if disabled  A malicious USB device can send a WMI_SWBA_EVENTID event from an ath9k_htc-managed device before beaconing has been enabled. This causes a device-by-zero error in the driver, leading to either a crash or an out of bounds read.  Prevent this by aborting the handling in ath9k_htc_swba() if beacons are not enabled. | 
| Source | CVE (at NVD; CERT, ENISA, LWN, oss-sec, fulldisc, Debian ELTS, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more) | 
| References | DLA-4327-1, DLA-4328-1, DSA-5973-1 | 
The table below lists information on source packages.
The information below is based on the following data on fixed versions.