CVE-2009-3280

Linux Kernel < 2.6.31 - Memory Corruption

Title source: rule

Description

Integer signedness error in the find_ie function in net/wireless/scan.c in the cfg80211 subsystem in the Linux kernel before 2.6.31.1-rc1 allows remote attackers to cause a denial of service (soft lockup) via malformed packets.

Scores

EPSS 0.0163
EPSS Percentile 81.6%

Classification

CWE
CWE-119
Status draft

Affected Products (1)

linux/linux_kernel < 2.6.31

Timeline

Published Sep 21, 2009
Tracked Since Feb 18, 2026