6.1
MEDIUM
CVE-2016-8658
Broadcom Brcm80211 Linux Kernel Stack-Based Buffer Overflow Denial of Service Vulnerability
Description

Stack-based buffer overflow in the brcmf_cfg80211_start_ap function in drivers/net/wireless/broadcom/brcm80211/brcmfmac/cfg80211.c in the Linux kernel before 4.7.5 allows local users to cause a denial of service (system crash) or possibly have unspecified other impact via a long SSID Information Element in a command to a Netlink socket.

INFO

Published Date :

Oct. 16, 2016, 9:59 p.m.

Last Modified :

Jan. 7, 2017, 3 a.m.

Remotely Exploitable :

No

Impact Score :

4.2

Exploitability Score :

1.8
Public PoC/Exploit Available at Github

CVE-2016-8658 has a 3 public PoC/Exploit available at Github. Go to the Public Exploits tab to see the list.

Affected Products

The following products are affected by CVE-2016-8658 vulnerability. Even if cvefeed.io is aware of the exact versions of the products that are affected, the information is not represented in the table below.

ID Vendor Product Action
1 Linux linux_kernel

We scan GitHub repositories to detect new proof-of-concept exploits. Following list is a collection of public exploits and proof-of-concepts, which have been published on GitHub (sorted by the most recently updated).

Map Vulnerabilities into Different Layers of the Container Image

Python

Updated: 1 year, 8 months ago
1 stars 0 fork 0 watcher
Born at : Oct. 5, 2022, 12:07 p.m. This repo has been linked 1276 different CVEs too.

None

Python

Updated: 1 month, 1 week ago
9 stars 1 fork 1 watcher
Born at : Aug. 30, 2017, 2:37 p.m. This repo has been linked 1269 different CVEs too.

None

Makefile C

Updated: 6 years, 9 months ago
5 stars 3 fork 3 watcher
Born at : Jan. 23, 2017, 2:30 p.m. This repo has been linked 5 different CVEs too.

Results are limited to the first 15 repositories due to potential performance issues.

The following list is the news that have been mention CVE-2016-8658 vulnerability anywhere in the article.

The following table lists the changes that have been made to the CVE-2016-8658 vulnerability over time.

Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability's severity, exploitability, or other characteristics.

  • CVE Modified by [email protected]

    May. 14, 2024

    Action Type Old Value New Value
  • CVE Modified by [email protected]

    Jan. 07, 2017

    Action Type Old Value New Value
    Added Reference http://www.ubuntu.com/usn/USN-3146-2 [No Types Assigned]
    Added Reference http://www.ubuntu.com/usn/USN-3146-1 [No Types Assigned]
    Added Reference http://www.ubuntu.com/usn/USN-3145-2 [No Types Assigned]
    Added Reference http://www.ubuntu.com/usn/USN-3145-1 [No Types Assigned]
  • CVE Modified by [email protected]

    Nov. 28, 2016

    Action Type Old Value New Value
    Added Reference http://www.securityfocus.com/bid/93541 [No Types Assigned]
  • Modified Analysis by [email protected]

    Oct. 18, 2016

    Action Type Old Value New Value
    Added CPE Configuration Configuration 1 OR *cpe:2.3:o:linux:linux_kernel:4.7.4:*:*:*:*:*:*:* (and previous)
    Added CVSS V2 (AV:L/AC:L/Au:N/C:N/I:P/A:C)
    Added CVSS V3 AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:H
    Changed Reference Type http://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.7.5 No Types Assigned http://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.7.5 Release Notes
    Changed Reference Type http://www.openwall.com/lists/oss-security/2016/10/13/1 No Types Assigned http://www.openwall.com/lists/oss-security/2016/10/13/1 Mailing List
    Changed Reference Type https://bugzilla.redhat.com/show_bug.cgi?id=1384403 No Types Assigned https://bugzilla.redhat.com/show_bug.cgi?id=1384403 Issue Tracking
    Changed Reference Type http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=ded89912156b1a47d940a0c954c43afbabd0c42c No Types Assigned http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=ded89912156b1a47d940a0c954c43afbabd0c42c Issue Tracking, Patch
    Changed Reference Type https://github.com/torvalds/linux/commit/ded89912156b1a47d940a0c954c43afbabd0c42c No Types Assigned https://github.com/torvalds/linux/commit/ded89912156b1a47d940a0c954c43afbabd0c42c Issue Tracking, Patch
    Added CWE CWE-119
  • Initial Analysis by [email protected]

    Oct. 17, 2016

    Action Type Old Value New Value
    Changed CPE Configuration Configuration 1 OR Configuration 1 OR *cpe:2.3:o:linux:linux_kernel:4.7.4:*:*:*:*:*:*:* (and previous)
    Added CVSS V2 (AV:L/AC:L/Au:N/C:N/I:P/A:C)
    Added CVSS V3 AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:H
    Changed Reference Type http://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.7.5 No Types Assigned http://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.7.5 Release Notes
    Changed Reference Type http://www.openwall.com/lists/oss-security/2016/10/13/1 No Types Assigned http://www.openwall.com/lists/oss-security/2016/10/13/1 Mailing List
    Changed Reference Type http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=ded89912156b1a47d940a0c954c43afbabd0c42c No Types Assigned http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=ded89912156b1a47d940a0c954c43afbabd0c42c Issue Tracking, Patch
    Changed Reference Type https://github.com/torvalds/linux/commit/ded89912156b1a47d940a0c954c43afbabd0c42c No Types Assigned https://github.com/torvalds/linux/commit/ded89912156b1a47d940a0c954c43afbabd0c42c Issue Tracking, Patch
    Added CWE CWE-119
  • CVE Translated by [email protected]

    Oct. 17, 2016

    Action Type Old Value New Value
EPSS is a daily estimate of the probability of exploitation activity being observed over the next 30 days. Following chart shows the EPSS score history of the vulnerability.
Exploit Prediction

EPSS is a daily estimate of the probability of exploitation activity being observed over the next 30 days.

0.04 }} 0.00%

score

0.05635

percentile

CVSS30 - Vulnerability Scoring System
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability