CVE-2023-53226
In the Linux kernel, the following vulnerability has been resolved: wifi: mwifiex: Fix OOB and integer underflow when rx packets Make sure mwifiex_process_mgmt_packet, mwifiex_process_sta_rx_packet and mwifiex_process_uap_rx_packet,…
Does this matter?
Lower severity and a low EPSS score (0.24%). Track it; it rarely justifies an emergency change on its own.
Description
In the Linux kernel, the following vulnerability has been resolved: wifi: mwifiex: Fix OOB and integer underflow when rx packets Make sure mwifiex_process_mgmt_packet, mwifiex_process_sta_rx_packet and mwifiex_process_uap_rx_packet, mwifiex_uap_queue_bridged_pkt and mwifiex_process_rx_packet not out-of-bounds access the skb->data buffer.
- CVSS 3.1
- 5.5 MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
- EPSS
- 0.24% probability · 15th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-191
- Affected
- linux/linux kernel
- Source
- 416baaa9-dc9f-4396-8d5f-8c081fb06d67
References
- https://git.kernel.org/stable/c/11958528161731c58e105b501ed60b83a91ea941Patch
- https://git.kernel.org/stable/c/29eca8b7863d1d7de6c5b746b374e3487d14f154Patch
- https://git.kernel.org/stable/c/3975e21d4d01efaf0296ded40d11c06589c49245Patch
- https://git.kernel.org/stable/c/3fe3923d092e22d87d1ed03e2729db444b8c1331Patch
- https://git.kernel.org/stable/c/650d1bc02fba7b42f476d8b6643324abac5921edPatch
- https://git.kernel.org/stable/c/7c54b6fc39eb1aac51cf2945f8a25e2a47fdca02Patch
- https://git.kernel.org/stable/c/8824aa4ab62c800f75d96f48e1883a5f56ec5869Patch
- https://git.kernel.org/stable/c/a7300e3800e9fd5405e88ce67709c1a97783b9c8Patch
- https://git.kernel.org/stable/c/f517c97fc129995de77dd06aa5a74f909ebf568fPatch
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.