Vulnerability Details CVE-2020-27302
A stack buffer overflow in Realtek RTL8710 (and other Ameba-based devices) can lead to remote code execution via the "memcpy" function, when an attacker in Wi-Fi range sends a crafted "Encrypted GTK" value as part of the WPA2 4-way-handshake.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 57.7%
CVSS Severity
CVSS v3 Score 8.0
CVSS v2 Score 7.7
Products affected by CVE-2020-27302
-
cpe:2.3:h:realtek:rtl8195a:-
-
cpe:2.3:h:realtek:rtl8710c:-
-
cpe:2.3:o:realtek:rtl8195a_firmware:-
-
cpe:2.3:o:realtek:rtl8710c_firmware:-