PT-2024-11882 · Linux +5 · Linux Kernel +5
Published
2022-11-25
·
Updated
2025-02-13
·
CVE-2022-49022
7.8
High
Base vector | Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions:
Linux kernel versions prior to 6.1.0-060100rc3-generic
Description:
The issue is related to a possible out-of-bound access in the `ieee80211 get rate duration` routine. This was reported by a UBSAN (Undefined Behavior Sanitizer) report, which indicated an array-index-out-of-bounds error in the `net/mac80211/airtime.c` file. The error occurred because an index of 15 was out of range for a type 'u16 [12]'. The vulnerability is related to the wifi and mac8021 components of the Linux kernel.
Recommendations:
For Linux kernel versions prior to 6.1.0-060100rc3-generic, consider updating to a newer version that includes the fix for the out-of-bound access issue in the `ieee80211 get rate duration` routine. As a temporary workaround, consider restricting access to the vulnerable wifi and mac8021 components until a patch is available.
Exploit
Fix
Improper Validation of Array Index
Weakness Enumeration
Related Identifiers
Affected Products
References · 2107
- 🔥 https://github.com/es0j/CVE-2023-0045⭐ 14 🔗 2 · Exploit
- 🔥 https://github.com/SeanHeelan/claude_opus_cve_2023_0266⭐ 12 🔗 2 · Exploit
- 🔥 https://github.com/ASkyeye/CVE-2023-0045⭐ 3 🔗 5 · Exploit
- https://bdu.fstec.ru/vul/2024-09781 · Security Note
- https://bdu.fstec.ru/vul/2024-07794 · Security Note
- https://cve.org/CVERecord?id=CVE-2022-49022 · Security Note
- https://bdu.fstec.ru/vul/2024-10092 · Security Note
- https://safe-surf.ru/specialists/bulletins-nkcki/695541 · Security Note
- https://bdu.fstec.ru/vul/2023-00946 · Security Note
- https://bdu.fstec.ru/vul/2025-06036 · Security Note
- http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-48966 · Security Note
- http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-48988 · Security Note
- https://bdu.fstec.ru/vul/2025-06063 · Security Note
- https://bdu.fstec.ru/vul/2023-03726 · Security Note
- https://bdu.fstec.ru/vul/2025-06041 · Security Note