Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2015-1090

Опубликовано: 11 июн. 2015
Источник: oracle-oval
Платформа: Oracle Linux 7

Описание

ELSA-2015-1090: wpa_supplicant security and enhancement update (IMPORTANT)

[1:2.0-17]

  • AP WMM: Fix integer underflow in WMM Action frame parser (rh #1221178) (rh #1222015)

[1:2.0-16]

  • P2P: Validate SSID element length before copying it (CVE-2015-1863)

[1:2.0-15]

  • Add domain_match config option from upstream (rh #1178263)
  • Include peer certificate in EAP events for use by clients

[1:2.0-14]

  • Use os_exec() for action script execution (CVE-2014-3686)

Обновленные пакеты

Oracle Linux 7

Oracle Linux x86_64

wpa_supplicant

2.0-17.el7_1

Связанные CVE

Связанные уязвимости

ubuntu
больше 10 лет назад

Heap-based buffer overflow in wpa_supplicant 1.0 through 2.4 allows remote attackers to cause a denial of service (crash), read memory, or possibly execute arbitrary code via crafted SSID information in a management frame when creating or updating P2P entries.

redhat
больше 10 лет назад

Heap-based buffer overflow in wpa_supplicant 1.0 through 2.4 allows remote attackers to cause a denial of service (crash), read memory, or possibly execute arbitrary code via crafted SSID information in a management frame when creating or updating P2P entries.

nvd
больше 10 лет назад

Heap-based buffer overflow in wpa_supplicant 1.0 through 2.4 allows remote attackers to cause a denial of service (crash), read memory, or possibly execute arbitrary code via crafted SSID information in a management frame when creating or updating P2P entries.

debian
больше 10 лет назад

Heap-based buffer overflow in wpa_supplicant 1.0 through 2.4 allows re ...

suse-cvrf
почти 8 лет назад

Security update for hostapd