Issue metadata
Sign in to add a comment
|
Security: BroadPwn bug on Broadcom WiFi chipsets (CVE-2017-9417) |
||||||||||||||||||||
Issue descriptionhttps://www.bleepingcomputer.com/news/security/broadpwn-bug-affects-millions-of-android-and-ios-devices/ Internal Android security bug: https://b.corp.google.com/issues/38041027 More details: http://boosterok.com/blog/broadpwn/ P0 for now until we get more details on exploitability on CrOS.
,
Jul 11 2017
Thanks for the prompt upload.
,
Jul 11 2017
,
Jul 11 2017
This is a critical security issue. If you are not able to fix this quickly, please revert the change that introduced it. If this doesn't affect a release branch, or has not been properly classified for severity, please update the Security_Impact or Security_Severity labels, and remove the ReleaseBlock label. To disable this altogether, apply ReleaseBlock-NA. For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot
,
Jul 11 2017
,
Jul 11 2017
Thanks! Are 4354 devices the only ones affected?
,
Jul 11 2017
To the best of my knowledge we only have 4354 in Chrome OS hardware.
,
Jul 11 2017
https://chromium-review.googlesource.com/c/563739/ is the firmwmare update.
,
Jul 13 2017
The following revision refers to this bug: https://chromium.googlesource.com/chromiumos/third_party/linux-firmware/+/aa91014b7b6971575048db1f2b15258de31225db commit aa91014b7b6971575048db1f2b15258de31225db Author: Jorge Lucangeli Obes <jorgelo@chromium.org> Date: Thu Jul 13 18:44:44 2017 Update brcmfmac4354-sdio firmware to v7.35.79.109. This fixes CVE-2017-9417. BUG= chromium:740776 TEST=Connect to open WiFi, 2.4 GHz. TEST=Connect to open WiFi, 5 GHz. TEST=Connect to encrypted WiFi. Change-Id: If24e3899cc9c29d97d46234daeeeb4f42330f863 Reviewed-on: https://chromium-review.googlesource.com/566888 Commit-Ready: Jorge Lucangeli Obes <jorgelo@chromium.org> Tested-by: Jorge Lucangeli Obes <jorgelo@chromium.org> Reviewed-by: Mattias Nissler <mnissler@chromium.org> [modify] https://crrev.com/aa91014b7b6971575048db1f2b15258de31225db/brcm/brcmfmac4354-sdio.bin
,
Jul 13 2017
We'll let this bake over a couple of canaries but we need to merge this back.
,
Jul 13 2017
This bug requires manual review: We are only 11 days from stable. Please contact the milestone owner if you have questions. Owners: amineer@(Android), cmasso@(iOS), josafat@(ChromeOS), bustamante@(Desktop) For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot
,
Jul 13 2017
Adding Josafat.
,
Jul 14 2017
Please mark security bugs as fixed as soon as the fix lands, and before requesting merges. This update is based on the merge- labels applied to this issue. Please reopen if this update was incorrect. For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot
,
Jul 15 2017
,
Jul 19 2017
Approved for M60 and removing M59 since no more releases plan for it
,
Jul 24 2017
The following revision refers to this bug: https://chromium.googlesource.com/chromiumos/third_party/linux-firmware/+/125c30c10407b5aec05642abea84779fa9e675bd commit 125c30c10407b5aec05642abea84779fa9e675bd Author: Jorge Lucangeli Obes <jorgelo@chromium.org> Date: Mon Jul 24 14:48:39 2017 Update brcmfmac4354-sdio firmware to v7.35.79.109. This fixes CVE-2017-9417. BUG= chromium:740776 TEST=Connect to open WiFi, 2.4 GHz. TEST=Connect to open WiFi, 5 GHz. TEST=Connect to encrypted WiFi. Change-Id: If24e3899cc9c29d97d46234daeeeb4f42330f863 Reviewed-on: https://chromium-review.googlesource.com/566888 Commit-Ready: Jorge Lucangeli Obes <jorgelo@chromium.org> Tested-by: Jorge Lucangeli Obes <jorgelo@chromium.org> Reviewed-by: Mattias Nissler <mnissler@chromium.org> (cherry picked from commit aa91014b7b6971575048db1f2b15258de31225db) Reviewed-on: https://chromium-review.googlesource.com/583267 Reviewed-by: Jorge Lucangeli Obes <jorgelo@chromium.org> Commit-Queue: Jorge Lucangeli Obes <jorgelo@chromium.org> Trybot-Ready: Jorge Lucangeli Obes <jorgelo@chromium.org> [modify] https://crrev.com/125c30c10407b5aec05642abea84779fa9e675bd/brcm/brcmfmac4354-sdio.bin
,
Jul 24 2017
This is now complete.
,
Jul 24 2017
This issue has been approved for a merge. Please merge the fix to any appropriate branches as soon as possible! If all merges have been completed, please remove any remaining Merge-Approved labels from this issue. Thanks for your time! To disable nags, add the Disable-Nags label. For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot
,
Jul 24 2017
,
Jul 26 2017
,
Oct 22 2017
This bug has been closed for more than 14 weeks. Removing security view restrictions. For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot
,
Jan 22 2018
,
Aug 14
|
|||||||||||||||||||||
►
Sign in to add a comment |
|||||||||||||||||||||
Comment 1 by terry-ht...@broadcom.com
, Jul 11 2017589 KB
589 KB Download