Security Advisory

CVE-2022-49503

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-02-26 02:13:36
Last updated 2026-05-11 19:01:10
Assigner Linux
State PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: ath9k_htc: fix potential out of bounds access with invalid rxstatus->rs_keyix The "rxstatus->rs_keyix" eventually gets passed to test_bit() so we need to ensure that it is within the bitmap. drivers/net/wireless/ath/ath9k/common.c:46 ath9k_cmn_rx_accept() error: passing untrusted data rx_stats->rs_keyix to test_bit()