CVE-2022-47519: High severity linux kernel vulnerability
An issue was discovered in the Linux kernel before 6.0.11. Missing validation of IEEE80211P2PATTROPERCHANNEL in drivers/net/wireless/microchip/wilc1000/cfg80211.c in the WILC1000 wireless driver can trigger an out-of-bounds write when parsing the channel list attribute from Wi-Fi management frames.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2022-47519?
CVE-2022-47519 has been classified as a high-severity vulnerability due to its potential for causing out-of-bounds writes.
How do I fix CVE-2022-47519?
To remediate CVE-2022-47519, upgrade to the patched versions of the Linux kernel, specifically versions 5.10.223-1, 5.10.226-1, 6.1.119-1, 6.1.123-1, 6.12.11-1, or 6.12.12-1.
Which systems are affected by CVE-2022-47519?
CVE-2022-47519 affects various versions of the Linux kernel prior to 6.0.11.
What type of vulnerability is CVE-2022-47519?
CVE-2022-47519 is a memory corruption vulnerability due to a lack of validation in the WILC1000 wireless driver.
Can CVE-2022-47519 be exploited remotely?
Yes, CVE-2022-47519 can be exploited remotely via malicious Wi-Fi management frames that induce an out-of-bounds write.