CVE-2019-16746
CRITICAL EPSS 95.8%
Published Sep 24, 20196y ago · Modified Jun 17, 20262w ago
9.8 CVSS 3.1
Published Sep 24, 2019 6y ago
Last Modified Jun 17, 2026 2w ago
Description
An issue was discovered in net/wireless/nl80211.c in the Linux kernel through 5.2.17. It does not check the length of variable elements in a beacon head, leading to a buffer overflow.
CVSS Details
Base Score
Exploitability
Impact
Vector string
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H Attack Vector Network
Attack Complexity Low
Privileges Required None
User Interaction None
Scope Unchanged
Confidentiality High
Integrity High
Availability High
Threat Intelligence
EPSS Exploit Probability
95.8% percentile
Exploit & Patch Status
No Known Exploit
Patch Available
Weaknesses 1
CWE-120
Affected Products 13
| Vendor | Product | Version | Range |
|---|---|---|---|
| linux | linux_kernel | * | ≥2.6.25 – <3.16.79 |
| linux | linux_kernel | * | ≥3.17 – <4.4.197 |
| linux | linux_kernel | * | ≥4.5 – <4.9.197 |
| linux | linux_kernel | * | ≥4.10 – <4.14.149 |
| linux | linux_kernel | * | ≥4.15 – <4.19.79 |
| linux | linux_kernel | * | ≥4.20 – <5.3.6 |
| debian | debian_linux | 8.0 | any |
| canonical | ubuntu_linux | 16.04 | any |
| canonical | ubuntu_linux | 18.04 | any |
| canonical | ubuntu_linux | 19.04 | any |
| canonical | ubuntu_linux | 19.10 | any |
| fedoraproject | fedora | 30 | any |
| opensuse | leap | 15.1 | any |
References 14
- lists.opensuse.org http://lists.opensuse.org/opensuse-security-announce/2020-03/msg00021.html
- lists.opensuse.org http://lists.opensuse.org/opensuse-security-announce/2020-08/msg00009.html
- packetstormsecurity.com http://packetstormsecurity.com/files/155212/Slackware-Security-Advisory-Slackware-14.2-kernel-Updates.html
- lists.debian.org https://lists.debian.org/debian-lts-announce/2020/01/msg00013.html
- lists.debian.org https://lists.debian.org/debian-lts-announce/2020/03/msg00001.html
- lists.fedoraproject.org https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/TASE2ESEZAER6DTZH3DJ4K2JNO46TVL7/
- marc.info https://marc.info/?l=linux-wireless&m=156901391225058&w=2
- seclists.org https://seclists.org/bugtraq/2019/Nov/11
- security.netapp.com https://security.netapp.com/advisory/ntap-20191031-0005/
- usn.ubuntu.com https://usn.ubuntu.com/4183-1/
- usn.ubuntu.com https://usn.ubuntu.com/4186-1/
- usn.ubuntu.com https://usn.ubuntu.com/4209-1/
- usn.ubuntu.com https://usn.ubuntu.com/4210-1/
- oracle.com https://www.oracle.com/security-alerts/cpuApr2021.html
Remediation
- marc.info https://marc.info/?l=linux-wireless&m=156901391225058&w=2