CVE-2014-8709 REJECTED

The ieee80211_fragment function in net/mac80211/tx.c in the Linux kernel before 3.13.5 does not properly maintain a certain tail pointer, which allows remote attackers to obtain sensitive cleartext information by reading packets.

EPSS 1.48% · 80.9th percentile

Risk Scores

EPSS Score
1.48%
80.9th percentile

Affected Products

VendorProductVersions
Ubuntu:14.04:LTSlinux-lts-wily0
Ubuntu:16.04:LTSlinux0
Ubuntu:16.04:LTSlinux-gke0
Ubuntu:14.04:LTSlinux-lts-xenial0
Ubuntu:16.04:LTSlinux-raspi20
Ubuntu:16.04:LTSlinux-snapdragon0
Ubuntu:14.04:LTSlinux3.12.0-3.9, 3.12.0-4.10, 3.12.0-4.12
Ubuntu:16.04:LTSlinux-hwe0
Ubuntu:14.04:LTSlinux-lts-utopic0
Ubuntu:16.04:LTSlinux-aws0
Ubuntu:14.04:LTSlinux-aws0
Ubuntu:14.04:LTSlinux-lts-vivid0

Timeline

References

Open in Interactive Console →