Infinite loop in Google Android - CVE-2017-15835

 

Infinite loop in Google Android - CVE-2017-15835

Published: December 7, 2018 / Updated: August 8, 2020


Vulnerability identifier: #VU36317
CSH Severity: Medium
CVSS v4.0: CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Green
CVE-ID: CVE-2017-15835
CWE-ID: CWE-835
Exploitation vector: Adjecent network
Exploit availability: No public exploit available
Vendor: Google
Affected software:
Google Android

Detailed vulnerability description

The vulnerability allows a remote non-authenticated attacker to perform a denial of service (DoS) attack.

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, While processing the RIC Data Descriptor IE in an artificially crafted 802.11 frame with IE length more than 255, an infinite loop may potentially occur resulting in a denial of service.


How to mitigate CVE-2017-15835

Install update from vendor's website.

Sources