Lucene search

K
vulnrichmentLinuxVULNRICHMENT:CVE-2024-38562
HistoryJun 19, 2024 - 1:35 p.m.

CVE-2024-38562 wifi: nl80211: Avoid address calculations via out of bounds array indexing

2024-06-1913:35:30
Linux
github.com
9
linux kernel
vulnerability resolved
wifi security

AI Score

6.9

Confidence

Low

EPSS

0

Percentile

5.1%

SSVC

Exploitation

none

Automatable

no

Technical Impact

partial

In the Linux kernel, the following vulnerability has been resolved:

wifi: nl80211: Avoid address calculations via out of bounds array indexing

Before request->channels[] can be used, request->n_channels must be set.
Additionally, address calculations for memory after the “channels” array
need to be calculated from the allocation base (“request”) rather than
via the first “out of bounds” index of “channels”, otherwise run-time
bounds checking will throw a warning.

CNA Affected

[
  {
    "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
    "vendor": "Linux",
    "product": "Linux",
    "versions": [
      {
        "status": "affected",
        "version": "e3eac9f32ec0",
        "lessThan": "ed74398642fc",
        "versionType": "git"
      },
      {
        "status": "affected",
        "version": "e3eac9f32ec0",
        "lessThan": "4e2a5566462b",
        "versionType": "git"
      },
      {
        "status": "affected",
        "version": "e3eac9f32ec0",
        "lessThan": "8fa4d56564ee",
        "versionType": "git"
      },
      {
        "status": "affected",
        "version": "e3eac9f32ec0",
        "lessThan": "838c7b8f1f27",
        "versionType": "git"
      }
    ],
    "programFiles": [
      "net/wireless/nl80211.c"
    ],
    "defaultStatus": "unaffected"
  },
  {
    "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
    "vendor": "Linux",
    "product": "Linux",
    "versions": [
      {
        "status": "affected",
        "version": "6.6"
      },
      {
        "status": "unaffected",
        "version": "0",
        "lessThan": "6.6",
        "versionType": "custom"
      },
      {
        "status": "unaffected",
        "version": "6.6.33",
        "versionType": "custom",
        "lessThanOrEqual": "6.6.*"
      },
      {
        "status": "unaffected",
        "version": "6.8.12",
        "versionType": "custom",
        "lessThanOrEqual": "6.8.*"
      },
      {
        "status": "unaffected",
        "version": "6.9.3",
        "versionType": "custom",
        "lessThanOrEqual": "6.9.*"
      },
      {
        "status": "unaffected",
        "version": "6.10",
        "versionType": "original_commit_for_fix",
        "lessThanOrEqual": "*"
      }
    ],
    "programFiles": [
      "net/wireless/nl80211.c"
    ],
    "defaultStatus": "affected"
  }
]

AI Score

6.9

Confidence

Low

EPSS

0

Percentile

5.1%

SSVC

Exploitation

none

Automatable

no

Technical Impact

partial