CVE-2016-5342
published 2016-08-30CVE-2016-5342: Heap-based buffer overflow in the wcnss_wlan_write function in drivers/net/wireless/wcnss/wcnss_wlan.c in the wcnss_wlan device driver for the Linux kernel…
PriorityP335high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.51%
40.8th percentile
Heap-based buffer overflow in the wcnss_wlan_write function in drivers/net/wireless/wcnss/wcnss_wlan.c in the wcnss_wlan device driver for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, allows attackers to cause a denial of service or possibly have unspecified other impact by writing to /dev/wcnss_wlan with an unexpected amount of data.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | — | — |
| android | <= 7.0 | — | |
| android | — | — | |
| linux | linux_kernel | 3.0 – 3.19.8 | — |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.2HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
osv7.8HIGH
vendor_debian7.8LOW
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Android
CVE-2016-5342: Android Security Bulletin 2016-10-01
CVE: CVE-2016-5342
Severity: HIGH
References: A-30878283
QC-CR#1032174
vendor_android·2016-10-01·CVSS 7.8
CVE-2016-5342 [HIGH] CVE-2016-5342: Android Security Bulletin 2016-10-01
CVE: CVE-2016-5342
Severity: HIGH
References: A-30878283
QC-CR#1032174
Android Security Bulletin 2016-10-01
CVE: CVE-2016-5342
Severity: HIGH
References: A-30878283
QC-CR#1032174
Red Hat
kernel: Heap-based buffer overflow in wcnss_wlan_write function
vendor_redhat·2016-08-30·CVSS 7.8
CVE-2016-5342 [HIGH] CWE-122 kernel: Heap-based buffer overflow in wcnss_wlan_write function
kernel: Heap-based buffer overflow in wcnss_wlan_write function
Heap-based buffer overflow in the wcnss_wlan_write function in drivers/net/wireless/wcnss/wcnss_wlan.c in the wcnss_wlan device driver for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, allows attackers to cause a denial of service or possibly have unspecified other impact by writing to /dev/wcnss_wlan with an unexpected amount of data.
Package: kernel (Red Hat Enterprise Linux 5) - Not affected
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Not affected
Package: kernel-alt (Red Hat Enterprise Linux 7) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 7) - Not affected
Packa
Debian
CVE-2016-5342: linux - Heap-based buffer overflow in the wcnss_wlan_write function in drivers/net/wirel...
vendor_debian·2016·CVSS 7.8
CVE-2016-5342 [HIGH] CVE-2016-5342: linux - Heap-based buffer overflow in the wcnss_wlan_write function in drivers/net/wirel...
Heap-based buffer overflow in the wcnss_wlan_write function in drivers/net/wireless/wcnss/wcnss_wlan.c in the wcnss_wlan device driver for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, allows attackers to cause a denial of service or possibly have unspecified other impact by writing to /dev/wcnss_wlan with an unexpected amount of data.
Scope: local
bookworm: resolved
bullseye: resolved
forky: resolved
sid: resolved
trixie: resolved
GHSA
GHSA-r2gf-cg95-782g: Heap-based buffer overflow in the wcnss_wlan_write function in drivers/net/wireless/wcnss/wcnss_wlan
ghsa_unreviewed·2022-05-13
CVE-2016-5342 [HIGH] CWE-787 GHSA-r2gf-cg95-782g: Heap-based buffer overflow in the wcnss_wlan_write function in drivers/net/wireless/wcnss/wcnss_wlan
Heap-based buffer overflow in the wcnss_wlan_write function in drivers/net/wireless/wcnss/wcnss_wlan.c in the wcnss_wlan device driver for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, allows attackers to cause a denial of service or possibly have unspecified other impact by writing to /dev/wcnss_wlan with an unexpected amount of data.
OSV
CVE-2016-5342: Heap-based buffer overflow in the wcnss_wlan_write function in drivers/net/wireless/wcnss/wcnss_wlan
osv·2016-08-30·CVSS 7.8
CVE-2016-5342 [HIGH] CVE-2016-5342: Heap-based buffer overflow in the wcnss_wlan_write function in drivers/net/wireless/wcnss/wcnss_wlan
Heap-based buffer overflow in the wcnss_wlan_write function in drivers/net/wireless/wcnss/wcnss_wlan.c in the wcnss_wlan device driver for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, allows attackers to cause a denial of service or possibly have unspecified other impact by writing to /dev/wcnss_wlan with an unexpected amount of data.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2016-5342 kernel: Heap-based buffer overflow in wcnss_wlan_write function [fedora-all]
bugzilla·2020-08-05·CVSS 7.8
CVE-2016-5342 [HIGH] CVE-2016-5342 kernel: Heap-based buffer overflow in wcnss_wlan_write function [fedora-all]
CVE-2016-5342 kernel: Heap-based buffer overflow in wcnss_wlan_write function [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple suppo
Bugzilla
CVE-2016-5342 kernel: Heap-based buffer overflow in wcnss_wlan_write function
bugzilla·2020-08-05·CVSS 7.8
CVE-2016-5342 [HIGH] CVE-2016-5342 kernel: Heap-based buffer overflow in wcnss_wlan_write function
CVE-2016-5342 kernel: Heap-based buffer overflow in wcnss_wlan_write function
Heap-based buffer overflow in the wcnss_wlan_write function in drivers/net/wireless/wcnss/wcnss_wlan.c in the wcnss_wlan device driver for the Linux kernel, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, allows attackers to cause a denial of service or possibly have unspecified other impact by writing to /dev/wcnss_wlan with an unexpected amount of data.
References:
http://source.android.com/security/bulletin/2016-10-01.html
http://www.securityfocus.com/bid/92693
https://source.codeaurora.org/quic/la/kernel/msm-3.18/commit/?id=579e796cb089324c55e0e689a180575ba81b23d9
Discussion:
Created kernel tracking bugs for this issue:
Affects: fedora-all [bug 18661
HackerOne
CVE-2017-5342 In tcpdump before 4.9.0 a bug in multiple protocol parsers could cause a buffer overflow in print-ether.c:ether_print()
hackerone·2019-10-08·CVSS 9.8
CVE-2017-5342 [CRITICAL] CVE-2017-5342 In tcpdump before 4.9.0 a bug in multiple protocol parsers could cause a buffer overflow in print-ether.c:ether_print()
CVE-2017-5342 In tcpdump before 4.9.0 a bug in multiple protocol parsers could cause a buffer overflow in print-ether.c:ether_print()
Reported to the project maintainers in 2016. gre_print_0() and the functions modelled after it passed the value of "length" instead of the value of "caplen", this could make ether_print() access beyond the memory allocated for the captured packet. Fixed by https://github.com/the-tcpdump-group/tcpdump/commit/0db4dcafe5ae38201d3869c96a96cb714d82ff35.
arXiv
An Empirical Study of Android Security Bulletins in Different Vendors
arxiv_fulltext·2020-02-22
An Empirical Study of Android Security Bulletins in Different Vendors
[An Empirical Study of Android Security Bulletins in Different Vendors]An Empirical Study of Android Security Bulletins\ Different Vendors
Sadegh Farhang
Pennsylvania State University
[email protected]
Mehmet Bahadir Kirdan
Technical University of Munich
[email protected]
Aron Laszka
University of Houston
[email protected]
Jens Grossklags
Technical University of Munich
[email protected]
## Abstract
Mobile devices encroach on almost every part of our lives, including work and leisure, and contain a wealth of personal and sensitive information. It is, therefore, imperative that these devices uphold high security standards. A key aspect is the security of the underlying operating system. In particular, Android plays a critical role due to being the most dominant platform
http://source.android.com/security/bulletin/2016-10-01.htmlhttp://www.securityfocus.com/bid/92693https://source.codeaurora.org/quic/la/kernel/msm-3.18/commit/?id=579e796cb089324c55e0e689a180575ba81b23d9https://www.codeaurora.org/buffer-overflow-vulnerability-wcnsswlanwrite-cve-2016-5342http://source.android.com/security/bulletin/2016-10-01.htmlhttp://www.securityfocus.com/bid/92693https://source.codeaurora.org/quic/la/kernel/msm-3.18/commit/?id=579e796cb089324c55e0e689a180575ba81b23d9https://www.codeaurora.org/buffer-overflow-vulnerability-wcnsswlanwrite-cve-2016-5342
2016-08-30
Published