CVE-2008-1144
Severity CVSS v4.0:
Pending analysis
Type:
CWE-20
Input Validation
Publication date:
05/09/2008
Last modified:
09/04/2025
Description
The Marvell driver for the Netgear WN802T Wi-Fi access point with firmware 1.3.16 on the Marvell 88W8361P-BEM1 chipset does not properly parse EAPoL-Key packets, which allows remote authenticated users to cause a denial of service (device reboot or hang) or possibly execute arbitrary code via a malformed EAPoL-Key packet with a crafted "advertised length."
Impact
Base Score 2.0
6.30
Severity 2.0
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:h:marvell:88w8361w-bem1:*:*:*:*:*:*:*:* | ||
| cpe:2.3:h:netgear:wn802t:1.3.16:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://secunia.com/advisories/31770
- http://securityreason.com/securityalert/4227
- http://www.securityfocus.com/archive/1/495982/100/0/threaded
- http://www.securityfocus.com/bid/31013
- https://exchange.xforce.ibmcloud.com/vulnerabilities/44919
- http://secunia.com/advisories/31770
- http://securityreason.com/securityalert/4227
- http://www.securityfocus.com/archive/1/495982/100/0/threaded
- http://www.securityfocus.com/bid/31013
- https://exchange.xforce.ibmcloud.com/vulnerabilities/44919



