Bug 2255497 (CVE-2023-7042) - CVE-2023-7042 kernel: null pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev()
Summary: CVE-2023-7042 kernel: null pointer dereference in ath10k_wmi_tlv_op_pull_mgmt...
Keywords:
Status: NEW
Alias: CVE-2023-7042
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
low
low
Target Milestone: ---
Assignee: Product Security
QA Contact:
URL:
Whiteboard:
Depends On: 2258053
Blocks: 2255495
TreeView+ depends on / blocked
 
Reported: 2023-12-21 10:39 UTC by Rohit Keshri
Modified: 2024-03-22 11:59 UTC (History)
45 users (show)

Fixed In Version:
Doc Type: If docs needed, set a value
Doc Text:
A null pointer dereference vulnerability was found in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() in drivers/net/wireless/ath/ath10k/wmi-tlv.c in the Linux kernel. This issue could be exploited to trigger a denial of service.
Clone Of:
Environment:
Last Closed:
Embargoed:


Attachments (Terms of Use)

Description Rohit Keshri 2023-12-21 10:39:00 UTC
A null pointer dereference vulnerability in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() in drivers/net/wireless/ath/ath10k/wmi-tlv.c in the Linux kernel, which could be exploited to trigger denial of service.

Refer:
https://patchwork.kernel.org/project/linux-wireless/patch/20231208043433.271449-1-hdthky0@gmail.com/

Comment 2 Mauro Matteo Cascella 2024-01-12 12:09:36 UTC
Created kernel tracking bugs for this issue:

Affects: fedora-all [bug 2258053]


Note You need to log in before you can comment on or make changes to this bug.