MadWifi Xrates Element Remote Denial of Service Vulnerability
BID:26052
Info
MadWifi Xrates Element Remote Denial of Service Vulnerability
| Bugtraq ID: | 26052 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2007-5448 |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 12 2007 12:00AM |
| Updated: | Jan 11 2008 03:59PM |
| Credit: | Clemens Kolbitsch and Sylvester Keil of Secure Systems Lab are credited with the discovery of this vulnerability. |
| Vulnerable: |
Mandriva Linux Mandrake 2008.0 x86_64 Mandriva Linux Mandrake 2008.0 Mandriva Linux Mandrake 2007.1 x86_64 Mandriva Linux Mandrake 2007.1 Mandriva Linux Mandrake 2007.0 x86_64 Mandriva Linux Mandrake 2007.0 MADWifi MADWifi 0.9.3 2 MADWifi MADWifi 0.9.3 MADWifi MADWifi 0.9.2 MADWifi MADWifi 0.9.3.1 MADWifi MADWifi 0.9.2.1 Gentoo Linux |
| Not Vulnerable: |
MADWifi MADWifi 0.9.3.3 |
Discussion
MadWifi Xrates Element Remote Denial of Service Vulnerability
MadWifi is prone to a remote denial-of-service vulnerability because the application limits the size of the extended supported rates element in beacon frames transmitted from wireless access points.
An attacker can exploit this issue to cause the affected computer to crash, denying further service to legitimate users.
This issue affects MadWifi 0.9.3.2 and prior versions.
MadWifi is prone to a remote denial-of-service vulnerability because the application limits the size of the extended supported rates element in beacon frames transmitted from wireless access points.
An attacker can exploit this issue to cause the affected computer to crash, denying further service to legitimate users.
This issue affects MadWifi 0.9.3.2 and prior versions.
Exploit / POC
MadWifi Xrates Element Remote Denial of Service Vulnerability
An attacker can exploit this issue by using readily available network utilities.
An attacker can exploit this issue by using readily available network utilities.
Solution / Fix
MadWifi Xrates Element Remote Denial of Service Vulnerability
Solution:
The vendor released an update to address this issue. Please see the references for more information.
MADWifi MADWifi 0.9.3.1
MADWifi MADWifi 0.9.2.1
MADWifi MADWifi 0.9.2
MADWifi MADWifi 0.9.3 2
MADWifi MADWifi 0.9.3
Solution:
The vendor released an update to address this issue. Please see the references for more information.
MADWifi MADWifi 0.9.3.1
-
MADWifi madwifi-0.9.3.3.tar.gz
http://downloads.sourceforge.net/madwifi/madwifi-0.9.3.3.tar.gz
MADWifi MADWifi 0.9.2.1
-
MADWifi madwifi-0.9.3.3.tar.gz
http://downloads.sourceforge.net/madwifi/madwifi-0.9.3.3.tar.gz
MADWifi MADWifi 0.9.2
-
MADWifi madwifi-0.9.3.3.tar.gz
http://downloads.sourceforge.net/madwifi/madwifi-0.9.3.3.tar.gz
MADWifi MADWifi 0.9.3 2
-
MADWifi madwifi-0.9.3.3.tar.gz
http://downloads.sourceforge.net/madwifi/madwifi-0.9.3.3.tar.gz
MADWifi MADWifi 0.9.3
-
MADWifi madwifi-0.9.3.3.tar.gz
http://downloads.sourceforge.net/madwifi/madwifi-0.9.3.3.tar.gz
References
MadWifi Xrates Element Remote Denial of Service Vulnerability
References:
References:
- MADWifi Changeset 2736 (MADWifi)
- MADWiFi Homepage (MADWiFi)
- SEC Consult SA-20071012-0 :: Madwifi xrates element remote DOS (Bernhard Mueller
)