CVE-2011-2480 describes an information disclosure vulnerability in the 802.11 stack affecting FreeBSD before version 8.2 and NetBSD on certain non-x86 architectures. A signedness error in the IEEE80211_IOC_CHANINFO ioctl allows a local, unprivileged user to read large portions of kernel memory. This vulnerability has a CVSS score of 7.5 (HIGH), indicating a significant risk of sensitive information disclosure. There is currently no evidence of active exploitation, public exploit code, or significant community discussion surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 8.2CPE matchmatch criteria | cpe:2.3:o:freebsd:freebsd:*:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:netbsd:netbsd:-:*:*:*:*:*:x86:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.