Alerts This Week
Warning Icon 1 916
Alerts This Week
Warning Icon 1 916

Fedora 21 Hostapd 2015-8336 Critical: Integer Underflow Threat

fedora
Calendar Grey May 27, 2015
Dist Fedora Esm H88
Tackling the integer overflow flaw in hostapd for Fedora 21 to boost overall system safety and dependability.
Security update for integer underflow in AP mode WMM Action frame processing.

Summary

hostapd is a user space daemon for access point and authentication servers. It

implements IEEE 802.11 access point management, IEEE 802.1X/WPA/WPA2/EAP

Authenticators and RADIUS authentication server.

hostapd is designed to be a "daemon" program that runs in the back-ground and

acts as the backend component controlling authentication. hostapd supports

separate frontend programs and an example text-based frontend, hostapd_cli, is

included with hostapd.

Update Information:

Security update for integer underflow in AP mode WMM Action frame processing.

Change Log

* Fri May 15 2015 John W. Linville - 2.4-2 - apply fix for underflow in WMM action frame parser * Tue Apr 21 2015 John W. Linville - 2.4-1 - Update to version 2.4 from upstream - Enable support for IEEE802.11r and IEEE802.11ac * Wed Feb 4 2015 John W. Linville - 2.3-4 - Use BSD instead of %doc for file containing license information * Sun Nov 2 2014 poma - 2.3-3 - Further simplify hostapd.conf installation - Rebase "EAP-TLS server" patch to 2.3 * Tue Oct 28 2014 John W. Linville - 2.3-2 - Remove version info from /usr/share/doc/hostapd/hostapd.conf

References


[ 1 ] Bug #1221178 - wpa_supplicant and hostapd: integer underflow in AP mode WMM Action frame processing https://bugzilla.redhat.com/show_bug.cgi?id=1221178

Update Instructions

This update can be installed with the "yum" update program. Use su -c 'yum update hostapd' at the command line. For more information, refer to "Managing Software with yum", available at .

Severity
critical
Lowest
Low
Medium
High
Critical

Name: hostapd
Product: Fedora 21
Version: 2.4
Release: 2.fc21
Summary: IEEE 802.11 AP, IEEE 802.1X/WPA/WPA2/EAP/RADIUS Authenticator

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here