Vulnerability Description
The length of attribute value for STA_EXT_CAPABILITY in __wlan_hdd_change_station in Android for MSM, Firefox OS for MSM, and QRD Android before 2017-06-06 being less than the actual lenth of StaParams.extn_capability results in a read for extra bytes when a memcpy is done from params->ext_capab to StaParams.extn_capability using the sizeof(StaParams.extn_capability).
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Android | - |
Related Weaknesses (CWE)
References
- http://www.securityfocus.com/bid/100210Third Party AdvisoryVDB Entry
- https://source.codeaurora.org/quic/la/platform/vendor/qcom-opensource/wlan/qcaclPatchThird Party Advisory
- https://www.codeaurora.org/security-bulletin/2017/10/20/october-2017-v1Third Party Advisory
- http://www.securityfocus.com/bid/100210Third Party AdvisoryVDB Entry
- https://source.codeaurora.org/quic/la/platform/vendor/qcom-opensource/wlan/qcaclPatchThird Party Advisory
- https://www.codeaurora.org/security-bulletin/2017/10/20/october-2017-v1Third Party Advisory
FAQ
What is CVE-2017-9693?
CVE-2017-9693 is a vulnerability with a CVSS score of 5.5 (MEDIUM). The length of attribute value for STA_EXT_CAPABILITY in __wlan_hdd_change_station in Android for MSM, Firefox OS for MSM, and QRD Android before 2017-06-06 being less than the actual lenth of StaParam...
How severe is CVE-2017-9693?
CVE-2017-9693 has been rated MEDIUM with a CVSS base score of 5.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2017-9693?
Check the references section above for vendor advisories and patch information. Affected products include: Google Android.