CVE-2016-8658 PUBLISHED

Stack-based buffer overflow in the brcmf_cfg80211_start_ap function in drivers/net/wireless/broadcom/brcm80211/brcmfmac/cfg80211.c in the Linux kernel before 4.7.5 allows local users to cause a denial of service (system crash) or possibly have unspecified other impact via a long SSID Information Element in a command to a Netlink socket.

EPSS 0.30% · 53.4th percentile

Risk Scores

EPSS Score
0.30%
53.4th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSlinux4.4.0-9.24, 0, 4.2.0-16.19
Ubuntu:14.04:LTSlinux-lts-vivid3.19.0-18.18~14.04.1, 3.19.0-37.42~14.04.1, 3.19.0-33.38~14.04.1
Ubuntu:16.04:LTSlinux-snapdragon0, 4.4.0-1012.12, 4.4.0-1013.14
Ubuntu:14.04:LTSlinux-lts-xenial4.4.0-13.29~14.04.1, 0, 4.4.0-14.30~14.04.2
Ubuntu:14.04:LTSlinux3.13.0-77.121, 3.13.0-74.118, 3.13.0-73.116
Ubuntu:16.04:LTSlinux-raspi24.4.0-1029.36, 4.4.0-1019.25, 4.4.0-1034.41

Timeline

References

Open in Interactive Console →