CVE-2024-48873 is a NULL pointer dereference vulnerability in the Linux kernel's rtw89 Wi-Fi driver. Specifically, the ieee80211_probereq_get() function could return NULL, leading to a system crash if its return value is used without proper validation. This vulnerability has a CVSS score of 5.5 (MEDIUM), indicating a local attack vector with low complexity, requiring local privileges, and potentially leading to a denial of service (system crash). There is currently no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 6.4, < 6.6.66CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
>= 6.7, < 6.12.5CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
HP ThinPro 8.1 SP8 Security Updates
Oct 27, 2025HP ThinPro 8.1 SP8 Security Updates
Oct 27, 2025HP ThinPro 8.1 SP8 Security Updates
Oct 27, 2025wifi: rtw89: check return value of ieee80211_probereq_get() for RNR
Jan 14, 2025kernel: wifi: rtw89: check return value of ieee80211_probereq_get() for RNR
Jan 11, 2025