First published: Tue Sep 05 2017(Updated: )
On Broadcom BCM4355C0 Wi-Fi chips 9.44.78.27.0.1.56 and other chips, properly crafted malicious over-the-air Fast Transition frames can potentially trigger internal Wi-Fi firmware heap and/or stack overflows, leading to denial of service or other effects, aka B-V2017061205.
Credit: Gal Beniamini Google Project ZeroGal Beniamini Google Project ZeroGal Beniamini Google Project ZeroGal Beniamini Google Project Zero cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Apple tvOS | <11 | 11 |
Apple iOS | <11 | 11 |
Broadcom Bcm4355c0 Firmware | =9.44.78.27.0.1.56 | |
Broadcom BCM4355C0 | ||
Apple iPhone OS | <11.0 | |
Apple tvOS | <11.0 | |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2017-11121 is a vulnerability affecting Wi-Fi chips, specifically the Broadcom BCM4355C0 Wi-Fi chip.
CVE-2017-11121 has a severity level of critical with a value of 9.
CVE-2017-11121 affects Google Android devices running on Broadcom BCM4355C0 Wi-Fi chips with the firmware version 9.44.78.27.0.1.56 and earlier.
CVE-2017-11121 affects Apple iOS devices running on iOS version up to and excluding 11.0.
To fix CVE-2017-11121, apply the necessary firmware or software updates provided by the respective vendors - Google and Apple.