Lucene search

K
redhatcveRedhat.comRH:CVE-2022-42719
HistoryOct 13, 2022 - 1:29 p.m.

CVE-2022-42719

2022-10-1313:29:31
redhat.com
access.redhat.com
12
linux kernel
cve-2022-42719
use-after-free
ieee802_11_parse_elems_full
multi-bssid
red hat product security
mitigation

8.8 High

CVSS3

Attack Vector

ADJACENT

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

0.01 Low

EPSS

Percentile

83.7%

A use-after-free flaw was found in ieee802_11_parse_elems_full in the net/mac80211/util.c function in the multi-BSSID element. This issue occurs while parsing in the Linux kernel.

Mitigation

Mitigation for this issue is either not available or the currently available options don't meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base, or stability.

8.8 High

CVSS3

Attack Vector

ADJACENT

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

0.01 Low

EPSS

Percentile

83.7%