OSVDB ID: 22537

Title: FreeBSD net80211 Module IEEE 802.11 Probe Response Overflow

Info

Disclosure

Jan 18, 2006

Discovery

Unknown

Dates

Exploit

Unknown

Solution

Unknown

Description

A remote overflow exists in FreeBSD. With a specially crafted request beacon or probe response frame, a malicious attacker may be able to execute arbitrary code within the context of the FreeBSD kernel on any system scanning for wireless networks. This flaw may lead to a loss of integrity.

Classification

Location: Remote / Network Access
Attack Type: Input Manipulation
Impact: Loss of Integrity
Disclosure: OSVDB Verified

Solution

Upgrade to version 6-STABLE or to the RELENG_6_0 security branch dated after the correction date, as it has been reported to fix this vulnerability. In addition, FreeBSD has released a patch for some older versions.

Products

FreeBSD Project

FreeBSD

6.0

References

Credit

  • Karl Janmar -


Direct URL: http://osvdb.org/22537