PT-2023-10613 · Unknown · Rofl0R Macgeiger

Published

2023-01-02

·

Updated

2024-05-17

·

CVE-2017-20161

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions rofl0r MacGeiger (affected versions not specified)
Description A problematic vulnerability has been found in rofl0r MacGeiger, affecting the dump wlan at function of the macgeiger.c file in the ESSID Handler component. The manipulation leads to injection, requiring access to the local network to succeed. The complexity of an attack is rather high, and the exploitability is difficult.
Recommendations To fix this issue, it is recommended to apply a patch with the name 57f1dd50a4821b8c8e676e8020006ae4bfd3c9cb. As a temporary workaround, consider disabling the dump wlan at function until a patch is available. Restrict access to the local network to minimize the risk of exploitation.

Fix

Special Elements Injection

Weakness Enumeration

Related Identifiers

CVE-2017-20161

Affected Products

Rofl0R Macgeiger