CVE-2024-35946

MEDIUM

Linux Kernel < 6.6.27, 5.16-6.6.27, 6.7-6.8.6 - NULL Pointer Dereference in rtw89 WiFi Scan Abort

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: wifi: rtw89: fix null pointer access when abort scan During cancel scan we might use vif that weren't scanning. Fix this by using the actual scanning vif.

Scores

CVSS v3 5.5
EPSS 0.0021
EPSS Percentile 11.4%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-476
Status published
Products (11)
linux/Kernel 5.16.0 - 6.6.27linux
linux/Kernel 6.7.0 - 6.8.6linux
Linux/Linux < 5.16
Linux/Linux 5.16
Linux/Linux 6.6.27 - 6.6.*
Linux/Linux 6.8.6 - 6.8.*
Linux/Linux 6.9
Linux/Linux e3ec7017f6a20d12ddd9fe23d345ebb7b8c104dd - 4f11c741908dab7dd48fa5a986b210d4fc74ca8d
Linux/Linux e3ec7017f6a20d12ddd9fe23d345ebb7b8c104dd - 7e11a2966f51695c0af0b1f976a32d64dee243b2
Linux/Linux e3ec7017f6a20d12ddd9fe23d345ebb7b8c104dd - b34d64e9aa5505e3c84570aed5c757f1839573e8
... and 1 more
Published May 19, 2024
Tracked Since Feb 18, 2026