CVE-2017-0786
published 2017-09-08CVE-2017-0786: A elevation of privilege vulnerability in the Broadcom wi-fi driver. Product: Android. Versions: Android kernel. Android ID: A-37351060. References…
high8.8CVSS 3.0
AVAACLPRNUINSUCHIHAH
A elevation of privilege vulnerability in the Broadcom wi-fi driver. Product: Android. Versions: Android kernel. Android ID: A-37351060. References: B-V2017060101.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 4.13.4-2 (bookworm) | linux 4.13.4-2 (bookworm) |
| android | — | — | |
| android | — | — | |
| google_inc | android | — | — |
| linux | linux_kernel | >= 0 < 4.13.4-2 | 4.13.4-2 |
| linux | linux_kernel | >= 0 < 4.13.4-2 | 4.13.4-2 |
| linux | linux_kernel | >= 0 < 4.13.4-2 | 4.13.4-2 |
| linux | linux_kernel | >= 0 < 4.13.4-2 | 4.13.4-2 |
CVSS provenance
nvdv3.08.8HIGHCVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
osv8.8HIGH
GHSA
GHSA-843x-7h9r-xpf8: A elevation of privilege vulnerability in the Broadcom wi-fi driver
ghsa_unreviewed·2022-05-13
CVE-2017-0786 [HIGH] GHSA-843x-7h9r-xpf8: A elevation of privilege vulnerability in the Broadcom wi-fi driver
A elevation of privilege vulnerability in the Broadcom wi-fi driver. Product: Android. Versions: Android kernel. Android ID: A-37351060. References: B-V2017060101.
Kernel
Merge tag 'wireless-drivers-for-davem-2017-09-25' of git://git.kernel.org/pub/scm/linux/kernel/git/kvalo/wireless-drivers
kernel_security·2017-09-26·CVSS 8.8
CVE-2017-0786 [HIGH] Merge tag 'wireless-drivers-for-davem-2017-09-25' of git://git.kernel.org/pub/scm/linux/kernel/git/kvalo/wireless-drivers
Merge tag 'wireless-drivers-for-davem-2017-09-25' of git://git.kernel.org/pub/scm/linux/kernel/git/kvalo/wireless-drivers
Kalle Valo says:
wireless-drivers fixes for 4.14
Quite a lot of fixes this time. Most notable is the brcmfmac fix for a
CVE issue.
iwlwifi
* a couple of bugzilla bugs related to multicast handling
* two fixes for WoWLAN bugs that were causing queue hangs and
re-initialization problems
* two fixes for potential uninitialized variable use reported by Dan
Carpenter in relation to a recently introduced patch
* a fix for buffer reordering in the newly supported 9000 device
family
* fix a race when starting aggregation
* small fix for a recent patch to wake mac80211 queues
* send non-bufferable management frames in the generic queue so they
are not sent on queues t
Kernel
brcmfmac: add length check in brcmf_cfg80211_escan_handler()
kernel_security·2017-09-12·CVSS 8.8
CVE-2017-0786 [HIGH] brcmfmac: add length check in brcmf_cfg80211_escan_handler()
brcmfmac: add length check in brcmf_cfg80211_escan_handler()
Upon handling the firmware notification for scans the length was
checked properly and may result in corrupting kernel heap memory
due to buffer overruns. This fix addresses CVE-2017-0786.
Cc: [email protected] # v4.0.x
Cc: Kevin Cernekee
Reviewed-by: Hante Meuleman
Reviewed-by: Pieter-Paul Giesberts
Reviewed-by: Franky Lin
Signed-off-by: Arend van Spriel
Signed-off-by: Kalle Valo
OSV
CVE-2017-0786: A elevation of privilege vulnerability in the Broadcom wi-fi driver
osv·2017-09-08·CVSS 8.8
CVE-2017-0786 [HIGH] CVE-2017-0786: A elevation of privilege vulnerability in the Broadcom wi-fi driver
A elevation of privilege vulnerability in the Broadcom wi-fi driver. Product: Android. Versions: Android kernel. Android ID: A-37351060. References: B-V2017060101.
Android
CVE-2017-0786: Wi-Fi driver
vendor_android·2017-09-01·CVSS 8.8
CVE-2017-0786 [HIGH] CVE-2017-0786: Wi-Fi driver
Android Security Bulletin 2017-09-01
CVE: CVE-2017-0786
Severity: HIGH
Type: EoP
Component: Wi-Fi driver
References: A-37351060*
B-V2017060101
Debian
CVE-2017-0786: linux - A elevation of privilege vulnerability in the Broadcom wi-fi driver. Product: An...
vendor_debian·2017·CVSS 8.8
CVE-2017-0786 [HIGH] CVE-2017-0786: linux - A elevation of privilege vulnerability in the Broadcom wi-fi driver. Product: An...
A elevation of privilege vulnerability in the Broadcom wi-fi driver. Product: Android. Versions: Android kernel. Android ID: A-37351060. References: B-V2017060101.
Scope: local
bookworm: resolved (fixed in 4.13.4-2)
bullseye: resolved (fixed in 4.13.4-2)
forky: resolved (fixed in 4.13.4-2)
sid: resolved (fixed in 4.13.4-2)
trixie: resolved (fixed in 4.13.4-2)
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2017-09-08
Published