Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-2017-11120

CWE-119Buffer Overflow7 documents6 sources
Severity
9.8CRITICAL
EPSS
24.4%
top 3.89%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Timeline
PublishedSep 28
Latest updateMay 14

Description

On Broadcom BCM4355C0 Wi-Fi chips 9.44.78.27.0.1.56 and other chips, an attacker can craft a malformed RRM neighbor report frame to trigger an internal buffer overflow in the Wi-Fi firmware, aka B-V2017061204.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

Affected Packages3 packages

NVDbroadcom/bcm4355c0_firmware9.44.78.27.0.1.56
NVDapple/tvos< 11.0
NVDapple/iphone_os< 11.0

🔴Vulnerability Details

2
GHSA
GHSA-g3j7-grgr-pgxq: On Broadcom BCM4355C0 Wi-Fi chips 92022-05-14
CVEList
CVE-2017-11120: On Broadcom BCM4355C0 Wi-Fi chips 92017-09-27

💥Exploits & PoCs

1
Exploit-DB
Apple iOS 10.2 - Broadcom Out-of-Bounds Write when Handling 802.11k Neighbor Report Response2017-09-25

📋Vendor Advisories

3
Apple
CVE-2017-11120: iOS 112017-09-19
Apple
CVE-2017-11120: tvOS 112017-09-19
Android
CVE-2017-11120: Wi-Fi driver2017-09-01
CVE-2017-11120 (CRITICAL CVSS 9.8) | On Broadcom BCM4355C0 Wi-Fi chips 9 | cvebase.io