cbcvebase.
CVE-2024-43842
published 2024-08-17

CVE-2024-43842: In the Linux kernel, the following vulnerability has been resolved: wifi: rtw89: Fix array index mistake in rtw89_sta_info_get_iter() In…

PriorityP336high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.22%
12.4th percentile
In the Linux kernel, the following vulnerability has been resolved: wifi: rtw89: Fix array index mistake in rtw89_sta_info_get_iter() In rtw89_sta_info_get_iter() 'status->he_gi' is compared to array size. But then 'rate->he_gi' is used as array index instead of 'status->he_gi'. This can lead to go beyond array boundaries in case of 'rate->he_gi' is not equal to 'status->he_gi' and is bigger than array size. Looks like "copy-paste" mistake. Fix this mistake by replacing 'rate->he_gi' with 'status->he_gi'. Found by Linux Verification Center (linuxtesting.org) with SVACE.

Affected

14 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.106-1 (bookworm)linux 6.1.106-1 (bookworm)
debianlinux-6.1< linux 6.1.106-1 (bookworm)linux 6.1.106-1 (bookworm)
linuxlinux
linuxlinux>= e3ec7017f6a20d12ddd9fe23d345ebb7b8c104dd < a2a095c08b95372d6d0c5819b77f071af5e75366a2a095c08b95372d6d0c5819b77f071af5e75366
linuxlinux>= e3ec7017f6a20d12ddd9fe23d345ebb7b8c104dd < 7a0edc3d83aff3a48813d78c9cad9daf38decc747a0edc3d83aff3a48813d78c9cad9daf38decc74
linuxlinux>= e3ec7017f6a20d12ddd9fe23d345ebb7b8c104dd < 96ae4de5bc4c8ba39fd072369398f59495b73f5896ae4de5bc4c8ba39fd072369398f59495b73f58
linuxlinux>= e3ec7017f6a20d12ddd9fe23d345ebb7b8c104dd < 85099c7ce4f9e64c66aa397cd9a37473637ab89185099c7ce4f9e64c66aa397cd9a37473637ab891
linuxlinux_kernel>= 0 < 6.1.106-16.1.106-1
linuxlinux_kernel>= 0 < 6.10.3-16.10.3-1
linuxlinux_kernel>= 0 < 6.10.3-16.10.3-1
linuxlinux_kernel>= 0 < 6.8.0-50.516.8.0-50.51
linuxlinux_kernel>= 5.16 < 6.1.1036.1.103
linuxlinux_kernel>= 6.2 < 6.6.446.6.44
linuxlinux_kernel>= 6.7 < 6.10.36.10.3

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
vendor_ubuntu5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.