In the Linux kernel, the following vulnerability has been resolved:
wifi: iwlwifi: fix a memory corruption
iwl_fw_ini_trigger_tlv::data is a pointer to a __le32, which means that
if we copy to iwl_fw_ini_trigger_tlv::data + offset while offset is in
bytes, we'll write past the buffer.
Metrics
Affected Vendors & Products
References
History
Fri, 22 Nov 2024 12:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
Tue, 05 Nov 2024 10:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
MITRE
Status: PUBLISHED
Assigner: Linux
Published: 2024-02-29T15:52:15.796Z
Updated: 2024-11-05T09:12:33.152Z
Reserved: 2024-02-19T14:20:24.130Z
Link: CVE-2024-26610
Vulnrichment
Updated: 2024-08-02T00:07:19.572Z
NVD
Status : Awaiting Analysis
Published: 2024-03-11T18:15:19.067
Modified: 2024-11-21T09:02:39.360
Link: CVE-2024-26610
Redhat