PT-2017-5796 · Google · Android

Andres Blanco

·

Published

2017-09-25

·

Updated

2018-10-09

·

CVE-2014-0997

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions: Android versions prior to 5.0.1 Android versions prior to 5.0.2 Android 4.4.4 Android 4.2.2 Android 4.1.2
Description: The issue allows remote attackers to cause a denial of service, resulting in a device reboot, via a crafted 802.11 probe response frame. This is due to improper exception handling in WiFiMonitor.
Recommendations: For Android 4.4.4, update to a version newer than 5.0.1 to resolve the issue. For Android 4.2.2, update to a version newer than 5.0.1 to resolve the issue. For Android 4.1.2, update to a version newer than 5.0.1 to resolve the issue. For versions prior to 5.0.1 and 5.0.2, update to version 5.0.1 or newer to resolve the issue.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2014-0997

Affected Products

Android