ZeroHour

CVE-2022-42719

PoC
CVSS 3.1
8.8 high
EPSS
1%p69
Published
()
Modified
Description

A use-after-free in the mac80211 stack when parsing a multi-BSSID element in the Linux kernel 5.2 through 5.19.x before 5.19.16 could be used by attackers (able to inject WLAN frames) to crash the kernel and potentially execute code.

Vendors
linuxfedoraprojectdebian
Products
linux kernel, fedora, debian linux
Weakness
CWE-416
Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.