U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

CVE-2022-49503 Detail

Description

In the Linux kernel, the following vulnerability has been resolved: ath9k_htc: fix potential out of bounds access with invalid rxstatus->rs_keyix The "rxstatus->rs_keyix" eventually gets passed to test_bit() so we need to ensure that it is within the bitmap. drivers/net/wireless/ath/ath9k/common.c:46 ath9k_cmn_rx_accept() error: passing untrusted data 'rx_stats->rs_keyix' to 'test_bit()'


Metrics

NVD enrichment efforts reference publicly available information to associate vector strings. CVSS information contributed by other sources is also displayed.
CVSS 4.0 Severity and Vector Strings:

NIST CVSS score
NIST: NVD
N/A
NVD assessment not yet provided.

References to Advisories, Solutions, and Tools

By selecting these links, you will be leaving NIST webspace. We have provided these links to other web sites because they may have information that would be of interest to you. No inferences should be drawn on account of other sites being referenced, or not, from this page. There may be other web sites that are more appropriate for your purpose. NIST does not necessarily endorse the views expressed, or concur with the facts presented on these sites. Further, NIST does not endorse any commercial products that may be mentioned on these sites. Please address comments about this page to nvd@nist.gov.

Hyperlink Resource
https://git.kernel.org/stable/c/0bcb528402cd5e1a6e1833e956fd58a12d509e8e
https://git.kernel.org/stable/c/2326d398ccd41ba6d93b8346532dfa432ab00fee
https://git.kernel.org/stable/c/2dc509305cf956381532792cb8dceef2b1504765
https://git.kernel.org/stable/c/3dad3fed5672828c7fb0465cb66a3d9a70952fa6
https://git.kernel.org/stable/c/461e4c1f199076275f16bf6f3d3e42c6b6c79f33
https://git.kernel.org/stable/c/4bdcf32c965c27f55ccc4ee71c1927131115b0bb
https://git.kernel.org/stable/c/7f6defe0fabc79f29603c6fa3c80e4fe0456a3e9
https://git.kernel.org/stable/c/a048e0c3caa852397b7b50d4c82a0415c05f7ac3
https://git.kernel.org/stable/c/eda518db7db16c360bc84379d90675650daa3048

Weakness Enumeration

CWE-ID CWE Name Source

Change History

1 change records found show changes

Quick Info

CVE Dictionary Entry:
CVE-2022-49503
NVD Published Date:
02/26/2025
NVD Last Modified:
02/26/2025
Source:
kernel.org