Description: Stack buffer overflow in brcmfmac driver References: Notes: bwh> Appears to have been introduced in 3.7 by commit 1a8733423975, bwh> contrary to the commit message. Source file was introduced as bwh> drivers/net/wireless/brcm80211/brcmfmac/wl_cfg80211.c, renamed to bwh> drivers/net/wireless/brcm80211/brcmfmac/cfg80211.c and then to bwh> drivers/net/wireless/broadcom/brcm80211/brcmfmac/cfg80211.c Bugs: upstream: released (4.8-rc8) [ded89912156b1a47d940a0c954c43afbabd0c42c] 3.16-upstream-stable: released (3.16.39) [brcmfmac-avoid-potential-stack-overflow-in-brcmf_cfg80211_start_ap.patch] 3.2-upstream-stable: N/A "Vulnerable code not present" sid: released (4.7.5-1) 3.16-jessie-security: released (3.16.39-1) 3.2-wheezy-security: N/A "Vulnerable code not present"