Linux kernel
cpe:2.3:o:kernel:linux_kernel:*:*:*:*:*:*:*, +4 more
A vulnerability in the Linux kernel's mac80211 wireless driver management has been addressed. The issue stemmed from improper handling of the 'drv_sta_pre_rcu_remove' calls for stations that had not been uploaded, potentially leading to data corruption by allowing uninitialized driver private data structures to cause issues. This vulnerability affects several versions of the Linux kernel.
The vulnerability could lead to data corruption by allowing uninitialized driver private data to cause issues, particularly in the context of wireless station management.
The vulnerability can be reproduced by creating a scenario where the 'drv_sta_pre_rcu_remove' function is called for a wireless station that has not been uploaded, allowing uninitialized private data to cause corruption.
Users can upgrade to the latest version of the Linux kernel where this vulnerability has been fixed. Instructions for downloading the patched version are available on the official Linux kernel website.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.