A remote overflow exists in FreeBSD. With a specially crafted request beacon or probe response frame, a malicious attacker may be able to execute arbitrary code within the context of the FreeBSD kernel on any system scanning for wireless networks. This flaw may lead to a loss of integrity.
Classification
Location:
Remote / Network Access
Attack Type:
Input Manipulation
Impact:
Loss of Integrity
Disclosure:
OSVDB Verified
Solution
Upgrade to version 6-STABLE or to the RELENG_6_0 security branch dated after the correction date, as it has been reported to fix this vulnerability. In addition, FreeBSD has released a patch for some older versions.