LWN.net Logo

madwifi: multiple vulnerabilities

Package(s):madwifi CVE #(s):CVE-2005-4835 CVE-2006-7177 CVE-2006-7178 CVE-2006-7179 CVE-2006-7180
Created:April 12, 2007 Updated:April 23, 2007
Description: Madwifi versions below 0.9.3 have a number of vulnerabilities including: a denial of service vulnerability in the ath_rate_sample function, a denial of service vulnerability related to Ad-Hoc mode, a denial of service caused by improper handling of an AUTH frame by an IBSS node, a denial of service cause by improper handling of Channel Switch Announcement Information Elements, and an information disclosure vulnerability caused by the sending of unencrypted packets before WPA authentication.
Alerts:
Foresight FLEA-2007-0012-1 2007-04-22
Gentoo 200704-15 2007-04-17
Mandriva MDKSA-2007:082 2007-04-11

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds