CVE-2024-46860

CVSS 3.1 Score 5.5 of 10 (medium)

Details

Published Sep 27, 2024
Updated: Oct 2, 2024
CWE ID 476

Summary

CVE-2024-46860: A vulnerability has been identified and addressed in the Linux kernel's wifi driver for the mt76 family of chips. Specifically, in the function mt7921_ipv6_addr_change, a NULL pointer access issue was found. This issue occurs when wifi is being disabled and the function is called as a notifier, with mvif->phy being already NULL, preventing proper usage of the pointer.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share