8.3
CVSSv2

CVE-2019-9502

Published: 03/02/2020 Updated: 10/02/2020
CVSS v2 Base Score: 8.3 | Impact Score: 10 | Exploitability Score: 6.5
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 741
Vector: AV:A/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

The Broadcom wl WiFi driver is vulnerable to a heap buffer overflow. If the vendor information element data length is larger than 164 bytes, a heap buffer overflow is triggered in wlc_wpa_plumb_gtk. In the worst case scenario, by sending specially-crafted WiFi packets, a remote, unauthenticated attacker may be able to execute arbitrary code on a vulnerable system. More typically, this vulnerability will result in denial-of-service conditions.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

synology router manager 1.2

broadcom bcm4339_firmware -

Vendor Advisories

There are two heap buffer overflow vulnerabilities in Broadcom WiFi chipset drivers A remote, unauthenticated attacker may send specially-crafted WiFi packets to exploit these vulnerabilities Successfully exploit may cause Wi-Fi functions abnormal (Vulnerability ID: HWPSIRT-2019-04121 and HWPSIRT-2019-04122)   The two vulnerabilities have b ...

Recent Articles

Old-school security hole perfect for worms and remote hijackings found lurking in Windows Server DNS code
The Register • Shaun Nichols in San Francisco • 15 Jul 2020

You'll want to patch that – and all these other bugs fixed by Microsoft, Oracle, Adobe, VMware, SAP, Google So kind of SAP NetWeaver to hand out admin accounts to anyone who can reach it. You'll want to patch this

Mega Patch Tuesday Microsoft on Tuesday patched a wormable hole in its Windows Server software that can be exploited remotely to completely commandeer the machine without any authorization. It was one of hundreds of security bugs squashed today by Redmond along with Oracle, Adobe, VMware, SAP and Google. Microsoft emitted fixes for 123 vulnerabilities in this month's Patch Tuesday batch. Some 18 of those CVE-listed security flaws are considered critical, meaning remote code execution (RCE) is po...