Three vulnerabilities in the Marvell Wi-Fi driver included in the Linux kernel

In the driver for wireless devices based on Marvell chips three vulnerabilities have been identified (CVE-2019-14814, CVE-2019-14815, CVE-2019-14816), which may lead to data being written outside the designated buffer when processing specially crafted packets sent through the interface Netlink.

The issues could be exploited by a local user to cause a kernel crash on systems using Marvell wireless cards. There is also a possibility of exploiting the vulnerabilities to elevate privileges in the system. The issues remain unpatched in distributions (Debian, Ubuntu, Alpine, SUSE/openSUSE, openSUSE). A patch has been proposed for inclusion in the Linux kernel patch.

Source: opennet.ru

Buy reliable website hosting with DDoS protection, VPS VDS servers 🔥 Buy reliable website hosting with DDoS protection, VPS VDS servers | ProHoster