CVE-2017-18067: Google Android

Critical severity, CVSS 9.8. EPSS: 2.9% chance of exploitation in the next 30 days.

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, improper input validation while processing an encrypted authentication management frame in lim_send_auth_mgmt_frame() leads to buffer overflow.

Affected products

  • Google Android: affected versions not specified

Published 2018-03-15. Last modified 2026-06-17.