An issue was discovered in the Linux kernel before 6.0.11. Missing offset validation in drivers/net/wireless/microchip/wilc1000/hif.c in the WILC1000 wireless driver can trigger an out-of-bounds read when parsing a Robust Security Network (RSN) information element from a Netlink packet.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-47520.json"
[
{
"id": "CVE-2022-47520-4a2c4c72",
"target": {
"file": "drivers/net/wireless/microchip/wilc1000/hif.c"
},
"signature_version": "v1",
"deprecated": false,
"source": "https://github.com/torvalds/linux/commit/cd21d99e595ec1d8721e1058dcdd4f1f7de1d793",
"digest": {
"threshold": 0.9,
"line_hashes": [
"132860813141938603043338290979610007084",
"7298832550401831013878969294887400615",
"141038043846853696991395280155981205933",
"219904679250435195826198127129553026757",
"106484724940466937110960321571814490451",
"239855408084352960630621767005925574713",
"14828725207095133874706746958837553509",
"158579260622010100993492593498651457888",
"97406015434761166268795874877780711280",
"277891913736449969613556102770408066627"
]
},
"signature_type": "Line"
},
{
"id": "CVE-2022-47520-650b3630",
"target": {
"function": "wilc_parse_join_bss_param",
"file": "drivers/net/wireless/microchip/wilc1000/hif.c"
},
"signature_version": "v1",
"deprecated": false,
"source": "https://github.com/torvalds/linux/commit/cd21d99e595ec1d8721e1058dcdd4f1f7de1d793",
"digest": {
"function_hash": "270469353555501242124002260950055779780",
"length": 3722.0
},
"signature_type": "Function"
}
]