CVE-2023-22386

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Jul 4, 2023
Updated: Apr 12, 2024
CWE ID 787
CWE ID 120

Summary

CVE-2023-22386 is a memory corruption vulnerability affecting the WLAN HOST component while processing WLAN FW requests for memory allocation. An attacker who successfully exploits this vulnerability could gain unauthorized control over the system, potentially leading to the execution of arbitrary code or a denial-of-service condition. Successful exploitation requires the attacker to be able to send a crafted WLAN FW request to the targeted system. Organizations are encouraged to apply the available patch or workaround to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share