CyberRota Analysis
AI-GeneratedThe vulnerability affects the Linux kernel's iwlwifi driver, specifically in the handling of the BA_WINDOW_STATUS_NOTIFICATION_ID, which improperly extracts a 5-bit sta_id for indexing without sufficient bounds checking. This flaw could lead to out-of-bounds memory access, potentially allowing attackers to execute arbitrary code or cause a denial of service. Linux system administrators and developers utilizing the iwlwifi driver should prioritize addressing this vulnerability to mitigate potential exploitation risks.
Original NVD Description
In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mvm: validate sta_id in BA window status notif BA_WINDOW_STATUS_NOTIFICATION_ID extracts a 5-bit sta_id from the firmware notification and uses it to index fw_id_to_mac_id[] without bounds checking. Validate sta_id before array access to prevent out-of-bounds indexing.