On the Broadcom Wi-Fi HardMAC SoC with fbt firmware, a stack buffer overflow occurs when handling an 802.11r (FT) authentication response, leading to remote code execution via a crafted access point that sends a long R0KH-ID field in a Fast BSS Transition Information Element (FT-IE).
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
broadcom hardmac_wi-fi_soc_firmware 6.37.34.40 |