CVE-2022-49533
Linux Kernel vulnerability analysis and mitigation

Overview

CVE-2022-49533 is a buffer overflow vulnerability discovered in the Linux kernel's ath11k driver. The issue stems from a mismatch between the reported maximum number of SSIDs (16) for active probe requests and the actual capacity of the scanreqparams structure (10 SSIDs). This vulnerability was disclosed and patched in early 2022 (Kernel Git).

Technical details

The vulnerability occurs in the ath11kmacophwscan route when copying SSIDs into the scanreqparams structure. The driver reports WLANSCANPARAMSMAXSSID as 16, but the structure can only hold 10 SSIDs, leading to a buffer overflow that can overwrite the extraie pointer. The firmware actually supports 16 SSID * 4 BSSID combinations, allowing for a total of 64 probe requests (Kernel Git).

Impact

The buffer overflow vulnerability can be triggered from wpa_supplicant in userspace, potentially leading to memory corruption and system instability. The issue affects the Linux kernel's wireless networking capabilities, specifically the ath11k driver used for Qualcomm Atheros wireless devices (NVD).

Mitigation and workarounds

The issue has been resolved by adjusting the maximum SSID and BSSID values to match firmware capabilities, setting them to 16 and 4 respectively, and removing redundant macros. The fix has been implemented in the Linux kernel through a patch that modifies the ath11k driver (Kernel Git).

Additional resources


SourceThis report was generated using AI

Related Linux Kernel vulnerabilities:

CVE ID

Severity

Score

Technologies

Component name

CISA KEV exploit

Has fix

Published date

CVE-2025-40344N/AN/A
  • Linux KernelLinux Kernel
  • kernel-debug-modules-internal
NoYesDec 09, 2025
CVE-2025-40343N/AN/A
  • Linux KernelLinux Kernel
  • kernel-64k-debug-devel
NoYesDec 09, 2025
CVE-2025-40342N/AN/A
  • Linux KernelLinux Kernel
  • kernel-64k-debug-devel-matched
NoYesDec 09, 2025
CVE-2025-40341N/AN/A
  • Linux KernelLinux Kernel
  • kernel-rt-64k-debug-modules-extra
NoYesDec 09, 2025
CVE-2025-40340N/AN/A
  • Linux KernelLinux Kernel
  • kernel-rt-64k-debug-kvm
NoYesDec 09, 2025

Free Vulnerability Assessment

Benchmark your Cloud Security Posture

Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.

Request assessment

Get a personalized demo

Ready to see Wiz in action?

"Best User Experience I have ever seen, provides full visibility to cloud workloads."
David EstlickCISO
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
Adam FletcherChief Security Officer
"We know that if Wiz identifies something as critical, it actually is."
Greg PoniatowskiHead of Threat and Vulnerability Management