In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, improper length check Validation in WLAN function can lead to driver writes the default rsn capabilities to the memory not allocated to the frame.
References
Link | Resource |
---|---|
http://www.securityfocus.com/bid/107770 | VDB Entry Third Party Advisory |
https://source.codeaurora.org/quic/la/platform/vendor/qcom-opensource/wlan/qcacld-3.0/commit/?id=3dfe93028c0c6564db7aa4607a85413195925aa4 | Patch Third Party Advisory |
https://www.codeaurora.org/security-bulletin/2018/09/04/september-2018-code-aurora-security-bulletin | Patch Third Party Advisory |
Configurations
History
No history.
Information
Published : 2018-09-19 14:29
Updated : 2024-02-04 20:03
NVD link : CVE-2018-11895
Mitre link : CVE-2018-11895
CVE.ORG link : CVE-2018-11895
JSON object : View
Products Affected
- android
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer