Impact
In the ath11k Wi‑Fi driver, firmware data is read without ensuring the buffer contains a full header, leading to a buffer overread. An attacker can craft malformed frames to expose sensitive memory contents or cause the kernel to crash, resulting in a denial‑of‑service.
Affected Systems
The vulnerability affects the ath11k Wi‑Fi driver included in the Linux kernel. All kernel releases that contain the driver before the patch are potentially vulnerable. Exact version numbers are not specified in the data, so any affected distribution lacking the fix is at risk.
Risk and Exploitability
The official EPSS score is less than 1%, indicating a low measured exploitation probability. The vulnerability is not listed in KISA KEV, and no public exploit is known. A likely attack vector is a remote adversary that can transmit malicious Wi‑Fi frames to the affected device. The exploit requires access to the wireless interface and the ability to send the specific malformed packet that triggers the overread. Although the risk is moderate, the potential for kernel panic warrants prompt attention.
OpenCVE Enrichment
Debian DLA
Debian DSA