Vulnerability Bulletins

DSA-3233 wpa - security update

   
Affected software Debian
 
The Google security team and the smart hardware research group ofAlibaba security team discovered a flaw in how wpa_supplicant used SSIDinformation when creating or updating P2P peer entries. A remoteattacker can use this flaw to cause wpa_supplicant to crash, exposememory contents, and potentially execute arbitrary code.

More info:

https://www.debian.org/security/2015/dsa-3233