Описание
Security update for wpa_supplicant
This update for wpa_supplicant fixes the following issue:
- CVE-2025-24912: hostapd RADIUS authentication of wi-fi devices allows a user in between the hostapd and the RADIUS server to inject crafted RADIUS packets and force RADIUS authentications to fail (bsc#1239461).
Список пакетов
SUSE Linux Enterprise Server LTSS Extended Security 12 SP5
wpa_supplicant-2.9-23.23.1
Ссылки
- Link for SUSE-SU-2026:3159-1
- E-Mail link for SUSE-SU-2026:3159-1
- SUSE Security Ratings
- SUSE Bug 1239461
- SUSE CVE CVE-2025-24912 page
Описание
hostapd fails to process crafted RADIUS packets properly. When hostapd authenticates wi-fi devices with RADIUS authentication, an attacker in the position between the hostapd and the RADIUS server may inject crafted RADIUS packets and force RADIUS authentications to fail.
Затронутые продукты
SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:wpa_supplicant-2.9-23.23.1
Ссылки
- CVE-2025-24912
- SUSE Bug 1239461