Описание
Integer underflow in the WMM Action frame parser in hostapd 0.5.5 through 2.4 and wpa_supplicant 0.7.0 through 2.4, when used for AP mode MLME/SME functionality, allows remote attackers to cause a denial of service (crash) via a crafted frame, which triggers an out-of-bounds read.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | DNE | |
| esm-infra-legacy/trusty | DNE | |
| precise | ignored | end of life |
| precise/esm | DNE | precise was needed |
| trusty | DNE | |
| trusty/esm | DNE | |
| upstream | pending | 2.5 |
| utopic | DNE | |
| vivid | DNE | |
| vivid/stable-phone-overlay | DNE |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | released | 2.1-0ubuntu8 |
| esm-infra-legacy/trusty | released | 2.1-0ubuntu1.3 |
| esm-infra/xenial | released | 2.1-0ubuntu8 |
| precise | DNE | |
| precise/esm | DNE | |
| trusty | released | 2.1-0ubuntu1.3 |
| trusty/esm | released | 2.1-0ubuntu1.3 |
| upstream | pending | 2.5 |
| utopic | released | 2.1-0ubuntu4.2 |
| vivid | released | 2.1-0ubuntu7.2 |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | DNE | |
| esm-infra-legacy/trusty | DNE | |
| precise | released | 0.7.3-6ubuntu2.4 |
| precise/esm | not-affected | 0.7.3-6ubuntu2.4 |
| trusty | DNE | |
| trusty/esm | DNE | |
| upstream | pending | 2.5 |
| utopic | DNE | |
| vivid | DNE | |
| vivid/stable-phone-overlay | DNE |
Показывать по
EPSS
4.3 Medium
CVSS2
Связанные уязвимости
Integer underflow in the WMM Action frame parser in hostapd 0.5.5 through 2.4 and wpa_supplicant 0.7.0 through 2.4, when used for AP mode MLME/SME functionality, allows remote attackers to cause a denial of service (crash) via a crafted frame, which triggers an out-of-bounds read.
Integer underflow in the WMM Action frame parser in hostapd 0.5.5 through 2.4 and wpa_supplicant 0.7.0 through 2.4, when used for AP mode MLME/SME functionality, allows remote attackers to cause a denial of service (crash) via a crafted frame, which triggers an out-of-bounds read.
Integer underflow in the WMM Action frame parser in hostapd 0.5.5 thro ...
Integer underflow in the WMM Action frame parser in hostapd 0.5.5 through 2.4 and wpa_supplicant 0.7.0 through 2.4, when used for AP mode MLME/SME functionality, allows remote attackers to cause a denial of service (crash) via a crafted frame, which triggers an out-of-bounds read.
ELSA-2015-1439: wpa_supplicant security and enhancement update (LOW)
EPSS
4.3 Medium
CVSS2