A stack buffer overflow in Realtek RTL8710 (and other Ameba-based devices) can lead to remote code execution via the "memcpy" function, when an attacker in Wi-Fi range sends a crafted "Encrypted GTK" value as part of the WPA2 4-way-handshake.
2021-06-04T13:15:08.660
2024-11-21T05:21:01.207
Modified
CVSSv3.1: 8.0 (HIGH)
AV:A/AC:L/Au:S/C:C/I:C/A:C
5.1
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | realtek | rtl8710c_firmware | - | Yes |
Hardware | realtek | rtl8710c | - | No |
Operating System | realtek | rtl8195a_firmware | - | Yes |
Hardware | realtek | rtl8195a | - | No |