qcacmn: Drop fragmented multicast/broadcast frames
CVE-2020-26145 Broadcast and multicast frames should never be fragmented. Several devices process broadcasted fragments as normal unfragmented frames. Moreover, some devices accept plaintext fragmented broadcast or multicast frames in protected Wi-Fi networks. An adversary can abuse this to inject packets by encapsulating them in a fragmented plaintext broadcast frame. Even unicast packets can be encapsulated in broadcast Wi-Fi frames and hence be injected. Change-Id: I3181a05e177cf9374a14edb748bc5001d058e0f3 CRs-Fixed: 2893212
Loading
Please register or sign in to comment