CVE-2017-11121
published 2017-09-28CVE-2017-11121: On Broadcom BCM4355C0 Wi-Fi chips 9.44.78.27.0.1.56 and other chips, properly crafted malicious over-the-air Fast Transition frames can potentially trigger…
PriorityP343critical9.8CVSS 3.0
AVNACLPRNUINSUCHIHAH
EPSS
2.79%
85.0th percentile
On Broadcom BCM4355C0 Wi-Fi chips 9.44.78.27.0.1.56 and other chips, properly crafted malicious over-the-air Fast Transition frames can potentially trigger internal Wi-Fi firmware heap and/or stack overflows, leading to denial of service or other effects, aka B-V2017061205.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | ios | — | — |
| apple | iphone_os | < 11.0 | 11.0 |
| apple | tvos | < 11.0 | 11.0 |
| apple | tvos | — | — |
| broadcom | bcm4355c0_firmware | — | — |
| android | — | — |
CVSS provenance
nvdv3.09.8CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.010.0CRITICALAV:N/AC:L/Au:N/C:C/I:C/A:C
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-f3pv-j4q8-42fr: On Broadcom BCM4355C0 Wi-Fi chips 9
ghsa_unreviewed·2022-05-14
CVE-2017-11121 [CRITICAL] CWE-119 GHSA-f3pv-j4q8-42fr: On Broadcom BCM4355C0 Wi-Fi chips 9
On Broadcom BCM4355C0 Wi-Fi chips 9.44.78.27.0.1.56 and other chips, properly crafted malicious over-the-air Fast Transition frames can potentially trigger internal Wi-Fi firmware heap and/or stack overflows, leading to denial of service or other effects, aka B-V2017061205.
Apple
CVE-2017-11121: iOS 11
vendor_apple·2017-09-19·CVSS 9.8
CVE-2017-11121 [CRITICAL] CVE-2017-11121: iOS 11
Apple Security Update: About the security content of iOS 11
Product: iOS
Version: 11
CVE: CVE-2017-11121
Component: Wi-Fi
Impact: An attacker within range may be able to execute arbitrary code on the Wi-Fi chip
Description: A memory corruption issue was addressed with improved memory handling.
Apple
CVE-2017-11121: tvOS 11
vendor_apple·2017-09-19·CVSS 9.8
CVE-2017-11121 [CRITICAL] CVE-2017-11121: tvOS 11
Apple Security Update: About the security content of tvOS 11
Product: tvOS
Version: 11
CVE: CVE-2017-11121
Component: Wi-Fi
Impact: An attacker within range may be able to execute arbitrary code on the Wi-Fi chip
Description: A memory corruption issue was addressed with improved memory handling.
Android
CVE-2017-11121: Wi-Fi driver
vendor_android·2017-09-01·CVSS 9.8
CVE-2017-11121 [CRITICAL] CVE-2017-11121: Wi-Fi driver
Android Security Bulletin 2017-09-01
CVE: CVE-2017-11121
Severity: CRITICAL
Type: RCE
Component: Wi-Fi driver
References: A-62576413*
B-V2017061205
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://packetstormsecurity.com/files/144329/Broadcom-802.11r-FT-Reassociation-Response-Overflows.htmlhttp://www.securityfocus.com/bid/100984https://bugs.chromium.org/p/project-zero/issues/detail?id=1291https://lists.apple.com/archives/security-announce/2017/Sep/msg00007.htmlhttps://lists.apple.com/archives/security-announce/2017/Sep/msg00009.htmlhttps://source.android.com/security/bulletin/2017-09-01https://support.apple.com/HT208112https://support.apple.com/HT208113https://support.apple.com/en-us/HT208112https://support.apple.com/en-us/HT208113http://packetstormsecurity.com/files/144329/Broadcom-802.11r-FT-Reassociation-Response-Overflows.htmlhttp://www.securityfocus.com/bid/100984https://bugs.chromium.org/p/project-zero/issues/detail?id=1291https://lists.apple.com/archives/security-announce/2017/Sep/msg00007.htmlhttps://lists.apple.com/archives/security-announce/2017/Sep/msg00009.htmlhttps://source.android.com/security/bulletin/2017-09-01https://support.apple.com/HT208112https://support.apple.com/HT208113https://support.apple.com/en-us/HT208112https://support.apple.com/en-us/HT208113
2017-09-28
Published