// For flags

CVE-2006-5882

Broadcom Wireless Driver - Probe Response SSID Overflow

Severity Score

8.3
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

1
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Stack-based buffer overflow in the Broadcom BCMWL5.SYS wireless device driver 3.50.21.10, as used in Cisco Linksys WPC300N Wireless-N Notebook Adapter before 4.100.15.5 and other products, allows remote attackers to execute arbitrary code via an 802.11 response frame containing a long SSID field.

Desbordamiento de búfer basado en la pila en el controlador de dispositivo wireless Broadcom BCMWL5.SYS 3.50.21.10, como ha sido usado en Cisco Linksys WPC300N Wireless-N Notebook Adapter anterior a 4.100.15.5 y otros productos, permite a atacantes remotos ejecutar código de su elección mediante una trama de respuesta 802.11 que contiene un campo SSID largo.

*Credits: N/A
CVSS Scores
Attack Vector
Adjacent
Attack Complexity
Low
Authentication
None
Confidentiality
Complete
Integrity
Complete
Availability
Complete
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2006-11-13 First Exploit
  • 2006-11-14 CVE Reserved
  • 2006-11-14 CVE Published
  • 2023-08-11 EPSS Updated
  • 2024-08-07 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
CWE
  • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Linksys
Search vendor "Linksys"
Wpc300n Wireless-n Notebook Adapter Driver
Search vendor "Linksys" for product "Wpc300n Wireless-n Notebook Adapter Driver"
*-
Affected
Broadcom
Search vendor "Broadcom"
Bcmwl5.sys Wireless Device Driver
Search vendor "Broadcom" for product "Bcmwl5.sys Wireless Device Driver"
3.50.21.10
Search vendor "Broadcom" for product "Bcmwl5.sys Wireless Device Driver" and version "3.50.21.10"
-
Affected