Direct naar de inhoud
Kritieke cyberalerts voor jouw sector & systemen — direct in je inbox. Aanmelden →
cybernieuws.nl Cybersecurity en informatiebeveiling nieuws alerts live · 12 min 103 bronnen 1 kritiek 44 vandaag
CVE's Videos

← Terug naar CVE-database

CVE-2015-4145

MEDIUM · 5.0 CVSS Gepubliceerd: CWE-399

Beschrijving

The EAP-pwd server and peer implementation in hostapd and wpa_supplicant 1.0 through 2.4 does not validate a fragment is already being processed, which allows remote attackers to cause a denial of service (memory leak) via a crafted message.

Vendors

W1.fi Opensuse

Affected products

Hostapd Opensuse Wpa Supplicant

References