CVE-2013-4579 is an information disclosure vulnerability in the ath9k_htc_set_bssid_mask function of the Linux kernel (through version 3.12). It allows remote attackers to discover the original MAC address of a Wi-Fi device after spoofing by analyzing responses to specially crafted packets. Rated with a CVSS score of 4.3 (AV:N/AC:M/Au:N/C:P/I:N/A:N), this vulnerability requires medium attack complexity and could lead to partial confidentiality impact. While not actively exploited or on the KEV catalog, an ExploitDB entry (EDB-38826) exists, but there is no evidence of Metasploit or Nuclei modules, and it has received negligible community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 3.12CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
3.0CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:3.0:rc1:*:*:*:*:*:* | ||
3.0CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:3.0:rc2:*:*:*:*:*:* | ||
3.0CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:3.0:rc3:*:*:*:*:*:* | ||
3.0CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:3.0:rc4:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:M/Au:N/C:P/I:N/A:N
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.