Back

HIGH

kernel: heap overflow in mwifiex_set_uap_rates() function of Marvell Wifi Driver leading to DoS

Published Sep 20, 2019

Description

There is heap-based buffer overflow in Linux kernel, all versions up to, excluding 5.3, in the marvell wifi chip driver in Linux kernel, that allows local users to cause a denial of service(system crash) or possibly execute arbitrary code.

Affected products

Remediation

No remediation recorded yet.

References (29)

Change history (4)
  1. MITRE
    • CVSS vector changed from CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H to CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
    • CVSS score changed from 6.7 to 5.5
  2. REDHAT
    • CVSS vector changed from CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H to CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
    • CVSS score changed from 5.5 to 6.7
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner redhat
Published Sep 20, 2019
Updated Aug 5, 2024
Reserved Aug 10, 2019
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Moderate
Public date Aug 28, 2019