CVE-2019-6496

UnknownEPSS 6.62%

Last modified

CVE-2019-6496 is a vulnerability of currently unknown severity. The ThreadX-based firmware on Marvell Avastar Wi-Fi devices, models 88W8787, 88W8797, 88W8801, 88W8897, and 88W8997, allows remote attackers to execute arbitrary code or cause a denial of service (block pool overflow) via malformed Wi-Fi packets during identification of available Wi-Fi networks. Exploitation of the Wi-Fi device can lead to exploitation of the host application processor in some cases, but this depends on several factors including host OS hardening and the availability of DMA.. EPSS estimates a 6.62% chance of exploitation in the next 30 days.

Description

The ThreadX-based firmware on Marvell Avastar Wi-Fi devices, models 88W8787, 88W8797, 88W8801, 88W8897, and 88W8997, allows remote attackers to execute arbitrary code or cause a denial of service (block pool overflow) via malformed Wi-Fi packets during identification of available Wi-Fi networks. Exploitation of the Wi-Fi device can lead to exploitation of the host application processor in some cases, but this depends on several factors including host OS hardening and the availability of DMA.

Metrics

EPSS Probability
6.62%

93.0th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
Marvell88w8787 FirmwareAll versions
Marvell88w8797 FirmwareAll versions
Marvell88w8801 FirmwareAll versions
Marvell88w8897 FirmwareAll versions
Marvell88w8997 FirmwareAll versions

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2019-6496?
The ThreadX-based firmware on Marvell Avastar Wi-Fi devices, models 88W8787, 88W8797, 88W8801, 88W8897, and 88W8997, allows remote attackers to execute arbitrary code or cause a denial of service (block pool overflow) via malformed Wi-Fi packets during identification of available Wi-Fi networks. Exploitation of the Wi-Fi device can lead to exploitation of the host application processor in some cases, but this depends on several factors including host OS hardening and the availability of DMA.
How severe is CVE-2019-6496?
Severity scoring for CVE-2019-6496 is pending analysis. The EPSS model estimates a 6.62% probability of exploitation in the next 30 days.
How do I fix CVE-2019-6496?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2019-6496?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST