Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-w22q-qppc-h59j

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.3

Описание

Out-of-bounds array access in dhd_rx_frame in drivers/net/wireless/bcmdhd4358/dhd_linux.c in the bcmdhd4358 Wi-Fi driver on the Samsung Galaxy S6 SM-G920F G920FXXU5EQH7 allows an attacker (who has obtained code execution on the Wi-Fi chip) to cause invalid accesses to operating system memory due to improper validation of the network interface index provided by the Wi-Fi chip's firmware.

Out-of-bounds array access in dhd_rx_frame in drivers/net/wireless/bcmdhd4358/dhd_linux.c in the bcmdhd4358 Wi-Fi driver on the Samsung Galaxy S6 SM-G920F G920FXXU5EQH7 allows an attacker (who has obtained code execution on the Wi-Fi chip) to cause invalid accesses to operating system memory due to improper validation of the network interface index provided by the Wi-Fi chip's firmware.

EPSS

Процентиль: 35%
0.00146
Низкий

6.3 Medium

CVSS3

Дефекты

CWE-119

Связанные уязвимости

CVSS3: 6.3
nvd
около 7 лет назад

Out-of-bounds array access in dhd_rx_frame in drivers/net/wireless/bcmdhd4358/dhd_linux.c in the bcmdhd4358 Wi-Fi driver on the Samsung Galaxy S6 SM-G920F G920FXXU5EQH7 allows an attacker (who has obtained code execution on the Wi-Fi chip) to cause invalid accesses to operating system memory due to improper validation of the network interface index provided by the Wi-Fi chip's firmware.

EPSS

Процентиль: 35%
0.00146
Низкий

6.3 Medium

CVSS3

Дефекты

CWE-119