CVE-2024-23364: Buffer Over-read in WLAN Firmware
Transient DOS when processing the non-transmitted BSSID profile sub-elements present within the MBSSID Information Element (IE) of a beacon frame that is received from over-the-air (OTA).
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-23364?
CVE-2024-23364 has been classified with a severity level indicating it can cause a transient denial of service (DoS).
How do I fix CVE-2024-23364?
To mitigate CVE-2024-23364, ensure your Google Android device is updated with the latest security patches provided by Google.
What causes CVE-2024-23364?
CVE-2024-23364 is caused by vulnerabilities in processing certain non-transmitted BSSID profile sub-elements within the MBSSID Information Element in beacon frames.
Which versions of Android are affected by CVE-2024-23364?
CVE-2024-23364 potentially affects specific versions of Google Android, and users should check the security bulletin for details.
Is CVE-2024-23364 exploitable remotely?
Yes, CVE-2024-23364 is exploitable remotely through specially crafted beacon frames received over the air.