From 75aa0b238b71498d25adc71d0dc3240e71e016a1 Mon Sep 17 00:00:00 2001 From: Remko Lodder Date: Tue, 14 Feb 2006 09:57:31 +0000 Subject: Document IEEE 802.11 -- buffer overflow (FreeBSD SA 06.05). --- security/vuxml/vuln.xml | 35 +++++++++++++++++++++++++++++++++++ 1 file changed, 35 insertions(+) (limited to 'security/vuxml/vuln.xml') diff --git a/security/vuxml/vuln.xml b/security/vuxml/vuln.xml index 1402ce405d50..406d48268779 100644 --- a/security/vuxml/vuln.xml +++ b/security/vuxml/vuln.xml @@ -34,6 +34,41 @@ Note: Please add new entries to the beginning of this file. --> + + IEEE 802.11 -- buffer overflow + + + FreeBSD + 6.06.0_3 + + + + +

Problem description:

+

An integer overflow in the handling of corrupt IEEE 802.11 + beacon or probe response frames when scanning for existing + wireless networks can result in the frame overflowing a + buffer.

+

Impact:

+

An attacker able broadcast a carefully crafted beacon or + probe response frame may be able to execute arbitrary code + within the context of the FreeBSD kernel on any system + scanning for wireless networks.

+

Workaround:

+

No workaround is available, but systems without IEEE 802.11 + hardware or drivers loaded are not vulnerable.

+ +
+ + CVE-2006-0226 + SA-06:05 + + + 2006-01-18 + 2006-02-14 + +
+ ipfw -- IP fragment denial of service -- cgit v1.2.3