PT-2018-17198 · Mozilla+3 · Firefox Os+3

Published

2018-06-15

·

Updated

2018-08-06

·

CVE-2018-5863

CVSS v2.0

4.6

Medium

VectorAV:L/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions: Android for MSM (affected versions not specified) Firefox OS for MSM (affected versions not specified) QRD Android (affected versions not specified)
Description: A buffer overflow issue occurs when userspace provides a too-large WPA RSN IE length in the wlan hdd cfg80211 set ie() function, affecting all Android releases from CAF using the Linux kernel.
Recommendations: For Android for MSM, update to a version that fixes the buffer overflow issue in the wlan hdd cfg80211 set ie() function. For Firefox OS for MSM, update to a version that fixes the buffer overflow issue in the wlan hdd cfg80211 set ie() function. For QRD Android, update to a version that fixes the buffer overflow issue in the wlan hdd cfg80211 set ie() function.

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2018-5863

Affected Products

Android
Firefox Os
Linux Kernel
Qrd Android