CVE-2017-11089
CVE-2017-11089
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 1.0%KEV nãoPoC —Nuclei —Metasploit —Patch referenciado
Lifecycle
16 Nov 2017Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, a buffer overread is observed in nl80211_set_station when user space application sends attribute NL80211_ATTR_LOCAL_MESH_POWER_MODE with data of size less than 4 bytes
Affected products
Qualcomm, Inc. · Android for MSM, Firefox OS for MSM, QRD AndroidWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →