PT-2018-6022 · Mozilla+1 · Firefox Os+1

Publicado

2018-03-30

·

Atualizado

2019-10-03

·

CVE-2017-15859

CVSS v2.0

5.0

Média

VetorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions: Android for MSM versions prior to 2017-08-11 Firefox OS for MSM versions prior to 2017-08-11 QRD Android versions prior to 2017-08-11
Description: A buffer overrun occurs when processing the QCA NL80211 VENDOR SUBCMD SET TXPOWER SCALE DECR DB vendor command. This happens because the attribute QCA WLAN VENDOR ATTR TXPOWER SCALE DECR DB contains fewer than 1 byte.
Recommendations: For Android for MSM versions prior to 2017-08-11, update to a version released after 2017-08-11. For Firefox OS for MSM versions prior to 2017-08-11, update to a version released after 2017-08-11. For QRD Android versions prior to 2017-08-11, update to a version released after 2017-08-11.

Correção

Memory Corruption

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2017-15859

Produtos afetados

Android
Firefox Os