A use-after-free in the mac80211 stack when parsing a multi-BSSID element in the Linux kernel 5.2 through 5.19.x before 5.19.16 could be used by attackers (able to inject WLAN frames) to crash the kernel and potentially execute code.
| Software | From | Fixed in |
|---|---|---|
| linux / linux_kernel | 6.0 | 6.0.2 |
| linux / linux_kernel | 5.2 | 5.4.219 |
| linux / linux_kernel | 5.5 | 5.10.149 |
| linux / linux_kernel | 5.11 | 5.15.74 |
| linux / linux_kernel | 5.16 | 5.19.16 |
| fedoraproject / fedora | 35 | 35.x |
| fedoraproject / fedora | 36 | 36.x |
| fedoraproject / fedora | 37 | 37.x |
| debian / debian_linux | 10.0 | 10.0.x |
| debian / debian_linux | 11.0 | 11.0.x |