In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, while processing start bss request from upper layer, out of bounds read occurs if ssid length is greater than maximum.
References
Link | Resource |
---|---|
https://www.codeaurora.org/security-bulletin/2018/09/04/september-2018-code-aurora-security-bulletin | Patch Third Party Advisory |
https://source.codeaurora.org/quic/la/platform/vendor/qcom-opensource/wlan/qcacld-3.0/commit/?id=dc657f502adb3038784b7488d2f183ed31b6aac3 | Patch Third Party Advisory |
https://source.android.com/security/bulletin/2018-09-01#qualcomm-components | Patch Vendor Advisory |
Configurations
Information
Published : 2018-09-19 07:29
Updated : 2018-11-09 08:22
NVD link : CVE-2018-11898
Mitre link : CVE-2018-11898
JSON object : View
CWE
CWE-125
Out-of-bounds Read
Products Affected
- android