CVE-2024-28084
published 2024-03-03CVE-2024-28084: p2putil.c in iNet wireless daemon (IWD) through 2.15 allows attackers to cause a denial of service (daemon crash) or possibly have unspecified other impact…
PriorityP431high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
EPSS
0.94%
57.4th percentile
p2putil.c in iNet wireless daemon (IWD) through 2.15 allows attackers to cause a denial of service (daemon crash) or possibly have unspecified other impact because of initialization issues in situations where parsing of advertised service information fails.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | iwd | < iwd 2.16-1 (forky) | iwd 2.16-1 (forky) |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
| intel | inet_wireless_daemon | <= 2.15 | — |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
osv7.5HIGH
vendor_debian7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-58qv-qvf3-f8mp: p2putil
ghsa_unreviewed·2024-03-03
CVE-2024-28084 [HIGH] CWE-665 GHSA-58qv-qvf3-f8mp: p2putil
p2putil.c in iNet wireless daemon (IWD) through 2.15 allows attackers to cause a denial of service (daemon crash) or possibly have unspecified other impact because of initialization issues in situations where parsing of advertised service information fails.
OSV
CVE-2024-28084: p2putil
osv·2024-03-03·CVSS 7.5
CVE-2024-28084 [HIGH] CVE-2024-28084: p2putil
p2putil.c in iNet wireless daemon (IWD) through 2.15 allows attackers to cause a denial of service (daemon crash) or possibly have unspecified other impact because of initialization issues in situations where parsing of advertised service information fails.
Debian
CVE-2024-28084: iwd - p2putil.c in iNet wireless daemon (IWD) through 2.15 allows attackers to cause a...
vendor_debian·2024·CVSS 7.5
CVE-2024-28084 [HIGH] CVE-2024-28084: iwd - p2putil.c in iNet wireless daemon (IWD) through 2.15 allows attackers to cause a...
p2putil.c in iNet wireless daemon (IWD) through 2.15 allows attackers to cause a denial of service (daemon crash) or possibly have unspecified other impact because of initialization issues in situations where parsing of advertised service information fails.
Scope: local
bookworm: open
bullseye: open
forky: resolved (fixed in 2.16-1)
sid: resolved (fixed in 2.16-1)
trixie: resolved (fixed in 2.16-1)
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://git.kernel.org/pub/scm/network/wireless/iwd.git/commit/?id=52a47c9fd428904de611a90cbf8b223af879684dhttps://git.kernel.org/pub/scm/network/wireless/iwd.git/commit/?id=d34b4e16e045142590ed7cb653e01ed0ae5362ebhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/4KSGT4IZ23CJBOQA3AFYEMBJ5OHFZBMK/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/AYRPQ3OLV3GGLUCDYWBHU34DLBLM62XJ/https://git.kernel.org/pub/scm/network/wireless/iwd.git/commit/?id=52a47c9fd428904de611a90cbf8b223af879684dhttps://git.kernel.org/pub/scm/network/wireless/iwd.git/commit/?id=d34b4e16e045142590ed7cb653e01ed0ae5362ebhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/4KSGT4IZ23CJBOQA3AFYEMBJ5OHFZBMK/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/AYRPQ3OLV3GGLUCDYWBHU34DLBLM62XJ/https://lists.fedoraproject.org/archives/list/[email protected]/message/4KSGT4IZ23CJBOQA3AFYEMBJ5OHFZBMK/https://lists.fedoraproject.org/archives/list/[email protected]/message/AYRPQ3OLV3GGLUCDYWBHU34DLBLM62XJ/
2024-03-03
Published