PT-2023-10613 · Unknown · Rofl0R Macgeiger
Published
2023-01-02
·
Updated
2024-05-17
·
CVE-2017-20161
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
rofl0r MacGeiger (affected versions not specified)
Description
A problematic vulnerability has been found in rofl0r MacGeiger, affecting the
dump wlan at function of the macgeiger.c file in the ESSID Handler component. The manipulation leads to injection, requiring access to the local network to succeed. The complexity of an attack is rather high, and the exploitability is difficult.Recommendations
To fix this issue, it is recommended to apply a patch with the name 57f1dd50a4821b8c8e676e8020006ae4bfd3c9cb. As a temporary workaround, consider disabling the
dump wlan at function until a patch is available. Restrict access to the local network to minimize the risk of exploitation.Fix
Special Elements Injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Rofl0R Macgeiger