wpa_supplicant TSF-Reporting Drivers Stack Based Buffer Overflow Vulnerability
BID:26555
Info
wpa_supplicant TSF-Reporting Drivers Stack Based Buffer Overflow Vulnerability
| Bugtraq ID: | 26555 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2007-6025 |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 23 2007 12:00AM |
| Updated: | Dec 18 2007 08:06PM |
| Credit: | Kees Cook <[email protected]> is credited with the discovery of this vulnerability. |
| Vulnerable: |
wpa_supplicant wpa_supplicant 0.6 Mandriva Linux Mandrake 2008.0 x86_64 Mandriva Linux Mandrake 2008.0 Debian Linux 4.0 sparc Debian Linux 4.0 s/390 Debian Linux 4.0 powerpc Debian Linux 4.0 mipsel Debian Linux 4.0 mips Debian Linux 4.0 m68k Debian Linux 4.0 ia-64 Debian Linux 4.0 ia-32 Debian Linux 4.0 hppa Debian Linux 4.0 arm Debian Linux 4.0 amd64 Debian Linux 4.0 alpha Debian Linux 4.0 |
| Not Vulnerable: | |
Discussion
wpa_supplicant TSF-Reporting Drivers Stack Based Buffer Overflow Vulnerability
The 'wpa_supplicant' program is prone to a stack-based buffer-overflow vulnerability because it fails to perform adequate boundary checks on user-supplied data.
Successfully exploiting this issue may allow attackers to execute arbitrary machine code in the context of the affected application, but this has not been confirmed. Failed exploit attempts may trigger crashes, denying service to legitimate users.
This issue affects wpa_supplicant 0.6.0; other versions may also be affected.
The 'wpa_supplicant' program is prone to a stack-based buffer-overflow vulnerability because it fails to perform adequate boundary checks on user-supplied data.
Successfully exploiting this issue may allow attackers to execute arbitrary machine code in the context of the affected application, but this has not been confirmed. Failed exploit attempts may trigger crashes, denying service to legitimate users.
This issue affects wpa_supplicant 0.6.0; other versions may also be affected.
Exploit / POC
wpa_supplicant TSF-Reporting Drivers Stack Based Buffer Overflow Vulnerability
Currently we are not aware of any working exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any working exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
wpa_supplicant TSF-Reporting Drivers Stack Based Buffer Overflow Vulnerability
Solution:
Fixes are available to address this issue. Please see the references for more information.
wpa_supplicant wpa_supplicant 0.6
Solution:
Fixes are available to address this issue. Please see the references for more information.
wpa_supplicant wpa_supplicant 0.6
-
Debian wpasupplicant_0.6.0-4.diff.gz
http://debian.linux-m32r.org/pool/main/w/wpasupplicant/wpasupplicant_0 .6.0-4.diff.gz
References
wpa_supplicant TSF-Reporting Drivers Stack Based Buffer Overflow Vulnerability
References:
References: