← Back

CVE-2020-9395

nvd nist
Published: Jul 6, 2020Modified: Nov 21, 2024

JSON object

Loading...
8.0
Vector
CVSS:3.1/AV:A/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H
Exploitability: 1.3 / Impact: 6.0
Source: NVD

Description

An issue was discovered on Realtek RTL8195AM, RTL8711AM, RTL8711AF, and RTL8710AF devices before 2.0.6. A stack-based buffer overflow exists in the client code that takes care of WPA2's 4-way-handshake via a malformed EAPOL-Key packet with a long keydata buffer.

Affected (4)

4 products
Rtl8711af Firmware
Rtl8711am Firmware
Rtl8195am Firmware
Rtl8710af Firmware
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 2.0.6
Running on/withPlatform Versions
Realtek
Rtl8711af
All versions
Configuration B
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 2.0.6
Running on/withPlatform Versions
Realtek
Rtl8711am
All versions
Configuration C
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 2.0.6
Running on/withPlatform Versions
Realtek
Rtl8195am
All versions
Configuration D
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 2.0.6
Running on/withPlatform Versions
Realtek
Rtl8710af
All versions

Timeline

No history available yet.