CVE-2009-0052

Atheros wireless driver <3.0.3 - DoS/Arbitrary Code Execution

Title source: llm
STIX 2.1

Description

The Atheros wireless driver, as used in Netgear WNDAP330 Wi-Fi access point with firmware 2.1.11 and other versions before 3.0.3 on the Atheros AR9160-BC1A chipset, and other products, allows remote authenticated users to cause a denial of service (device reboot or hang) and possibly execute arbitrary code via a truncated reserved management frame.

References (6)

Core 6
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/36991
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/507777/100/0/threaded
Vendor Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2009/3212
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/37344
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/59880
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/54216

Scores

EPSS 0.0093
EPSS Percentile 76.3%

Details

Status published
Products (2)
atheros/ar9160-bc1a_chipset
netgear/wndap330_firmware 2.1.11
Published Nov 12, 2009
Tracked Since Feb 18, 2026