In the driver for wireless devices based on Marvell chips (, , ), which may lead to data being written outside the designated buffer when processing specially crafted packets sent through the interface .
The issues could be exploited by a local user to cause a kernel crash on systems using Marvell wireless cards. There is also a possibility of exploiting the vulnerabilities to elevate privileges in the system. The issues remain unpatched in distributions (, , , , ). A patch has been proposed for inclusion in the Linux kernel .
Source: opennet.ru
