Vulnerability Bulletins

DSA-3052 wpa - security update

   
Affected software Debian
 
Jouni Malinen discovered an input sanitization issue in the wpa_cli andhostapd_cli tools included in the wpa package. A remote wifi systemwithin range could provide a crafted string triggering arbitrary codeexecution running with privileges of the affected wpa_cli or hostapd_cliprocess.

More info:

https://www.debian.org/security/2014/dsa-3052