PT-2017-2983 · Broadcom · Bcm4355C0 Wi-Fi Chip
Gal Beniamini
·
Published
2017-06-12
·
Updated
2019-03-13
·
CVE-2017-11121
CVSS v2.0
10
Critical
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Broadcom BCM4355C0 Wi-Fi chip versions 9.44.78.27.0.1.56 and earlier
Description
The issue is caused by a buffer overflow in the memory of the Wi-Fi chip, which can be exploited by a remote attacker using specially crafted frames. This can lead to a denial of service, causing the Wi-Fi device to become unresponsive. The exploitation may involve triggering internal Wi-Fi firmware heap and/or stack overflows.
Recommendations
For version 9.44.78.27.0.1.56 and earlier, consider disabling the Wi-Fi functionality until a patch is available to prevent potential exploitation.
As a temporary workaround, restrict access to the Wi-Fi network to minimize the risk of exploitation.
Avoid using the affected Wi-Fi chip in sensitive environments until the issue is resolved.
Exploit
Fix
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Bcm4355C0 Wi-Fi Chip