Impact
The kernel has a buffer underflow situation in the ath11k wireless driver. When the first entry contains a zero address, the code erroneously accesses the previous buffer entry, leading to an out‑of‑bounds read. This can expose kernel memory contents to userspace or trigger a crash, resulting in information disclosure or a denial of service. The weakness is a classic out‑of‑bounds read flaw.
Affected Systems
The bug exists in all Linux distributions that ship a kernel containing the older ath11k driver code. No specific version list is provided in the advisory, so any kernel prior to the commit that added the zero‑address guard is affected. The issue is present only when the ath11k driver is enabled for Wi‑Fi hardware.
Risk and Exploitability
The CVSS score is 5.5, EPSS < 1%, and the vulnerability is not listed in KEV. Based on the description, this flaw exists in the kernel and could be triggered by packets sent to the Wi‑Fi interface. The potential attack vector is inferred as local or requiring proximity to the device, and no public exploits are documented. The impact could be significant if an attacker can read sensitive memory or crash the system.
OpenCVE Enrichment
Debian DLA