Lucene search

K
cve[email protected]CVE-2022-23088
HistoryFeb 15, 2024 - 5:15 a.m.

CVE-2022-23088

2024-02-1505:15:09
web.nvd.nist.gov
5574
4
cve-2022-23088
802.11
beacon
ieee
802.11s
mesh id
heap-allocated buffer
freebsd
wi-fi
scanning mode
remote code execution
nvd

7.3 High

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

29.0%

The 802.11 beacon handling routine failed to validate the length of an IEEE 802.11s Mesh ID before copying it to a heap-allocated buffer.

While a FreeBSD Wi-Fi client is in scanning mode (i.e., not associated with a SSID) a malicious beacon frame may overwrite kernel memory, leading to remote code execution.

CNA Affected

[
  {
    "defaultStatus": "unknown",
    "modules": [
      "net80211"
    ],
    "product": "FreeBSD",
    "vendor": "FreeBSD",
    "versions": [
      {
        "lessThan": "p1",
        "status": "affected",
        "version": "13.1-RC1",
        "versionType": "release"
      },
      {
        "lessThan": "p11",
        "status": "affected",
        "version": "13.0-RELEASE",
        "versionType": "release"
      },
      {
        "lessThan": "p5",
        "status": "affected",
        "version": "12.3-RELEASE",
        "versionType": "release"
      }
    ]
  }
]

Social References

More

7.3 High

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

29.0%