PT-2016-7036 · Qualcomm · Qualcomm Wi-Fi Driver
Publicado
2016-10-10
·
Atualizado
2016-12-06
·
CVE-2016-6675
CVSS v2.0
9.3
Alta
| Vetor | AV:N/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Qualcomm Wi-Fi driver versions prior to 2016-10-05
Description
The issue is related to an off-by-one error in the CORE/HDD/src/wlan hdd hostapd.c file of the Qualcomm Wi-Fi driver. This error can be exploited by attackers via a crafted application that makes a linkspeed ioctl call, potentially leading to a buffer overflow. As a result, attackers may gain privileges or cause a denial of service.
Recommendations
For versions prior to 2016-10-05, update the Qualcomm Wi-Fi driver to a version released after 2016-10-05 to resolve the issue.
Correção
Buffer Overflow
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Qualcomm Wi-Fi Driver