An issue was discovered in the Linux kernel before 6.0.11. Missing validation of the number of channels in drivers/net/wireless/microchip/wilc1000/cfg80211.c in the WILC1000 wireless driver can trigger a heap-based buffer overflow when copying the list of operating channels from Wi-Fi management frames.
| Software | From | Fixed in |
|---|---|---|
| debian / debian_linux | 10.0 | 10.0.x |
| linux / linux_kernel | 5.11 | 5.15.81 |
| linux / linux_kernel | 5.16 | 6.0.11 |
| linux / linux_kernel | 4.2 | 5.10.157 |