rtwwxsetscan in drivers/staging/rtl8188eu/osdep/ioctl_linux.c in the Linux kernel through 5.11.6 allows writing beyond the end of the ->ssid[] array. NOTE: from the perspective of kernel.org releases, CVE IDs are not normally used for drivers/staging/* (unfinished work); however, system integrators may have situations in which a drivers/staging issue is relevant to their own customer base.
[
{
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@74b6b20df8cfe90ada777d621b54c32e69e27cd7",
"id": "CVE-2021-28660-2e2617cb",
"target": {
"file": "drivers/staging/rtl8188eu/os_dep/ioctl_linux.c",
"function": "rtw_wx_set_scan"
},
"digest": {
"function_hash": "60123586303067899501716303919211193956",
"length": 2495.0
},
"signature_type": "Function",
"signature_version": "v1"
},
{
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@74b6b20df8cfe90ada777d621b54c32e69e27cd7",
"id": "CVE-2021-28660-943c3714",
"target": {
"file": "drivers/staging/rtl8188eu/os_dep/ioctl_linux.c"
},
"digest": {
"line_hashes": [
"285308904507204737440395253608210079185",
"206141281995108675438447095453330936789",
"182502024444872512755450129268984866659",
"161924344345223171790314512104174917307",
"109368894064840803650794845553859979585",
"170064063067936170451218380176967608"
],
"threshold": 0.9
},
"signature_type": "Line",
"signature_version": "v1"
}
]
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2021-28660.json"