← Voltar para CVEs
CVE-2017-11035
N/ADescricao
In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, possible buffer overflow or information leak in the functions "sme_set_ft_ies" and "csr_roam_issue_ft_preauth_req" due to incorrect initialization of WEXT callbacks and lack of the checks for buffer size.
Detalhes CVE
Pontuacao CVSS v3.1N/A
Publicado11/16/2017
Ultima modificacao4/20/2025
Fontenvd
Avistamentos honeypot0
Produtos afetados
google:android
Fraquezas (CWE)
CWE-125
Referencias
https://source.android.com/security/bulletin/pixel/2017-11-01(product-security@qualcomm.com)
https://source.android.com/security/bulletin/pixel/2018-01-01(product-security@qualcomm.com)
https://source.android.com/security/bulletin/pixel/2017-11-01(af854a3a-2127-422b-91ae-364da2661108)
https://source.android.com/security/bulletin/pixel/2018-01-01(af854a3a-2127-422b-91ae-364da2661108)
Correlacoes IOC
Sem correlacoes registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.