cbcvebase.
CVE-2024-35946
published 2024-05-19

CVE-2024-35946: In the Linux kernel, the following vulnerability has been resolved: wifi: rtw89: fix null pointer access when abort scan During cancel scan we might use vif…

PriorityP419medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.21%
11.5th percentile
In the Linux kernel, the following vulnerability has been resolved: wifi: rtw89: fix null pointer access when abort scan During cancel scan we might use vif that weren't scanning. Fix this by using the actual scanning vif.

Affected

10 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.8.9-1 (forky)linux 6.8.9-1 (forky)
linuxlinux
linuxlinux>= e3ec7017f6a20d12ddd9fe23d345ebb7b8c104dd < b34d64e9aa5505e3c84570aed5c757f1839573e8b34d64e9aa5505e3c84570aed5c757f1839573e8
linuxlinux>= e3ec7017f6a20d12ddd9fe23d345ebb7b8c104dd < 4f11c741908dab7dd48fa5a986b210d4fc74ca8d4f11c741908dab7dd48fa5a986b210d4fc74ca8d
linuxlinux>= e3ec7017f6a20d12ddd9fe23d345ebb7b8c104dd < 7e11a2966f51695c0af0b1f976a32d64dee243b27e11a2966f51695c0af0b1f976a32d64dee243b2
linuxlinux_kernel< 6.6.276.6.27
linuxlinux_kernel>= 0 < 6.8.9-16.8.9-1
linuxlinux_kernel>= 0 < 6.8.9-16.8.9-1
linuxlinux_kernel>= 0 < 6.8.0-38.386.8.0-38.38
linuxlinux_kernel>= 6.7 < 6.8.66.8.6

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv6.8MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
vendor_ubuntu4.6MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.