Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 461
Alerts This Week
Warning Icon 1 461

Fedora 21 Moderate: wpa_supplicant Bug 1241907 Network Security Patch

fedora
Calendar Grey July 30, 2015
Scroller Fedora
A security patch for Fedora 21 resolves an issue in wpa_supplicant, improving the reliability of network authentication.
The update adds a patch for the security issue in bug 1241907.

Summary

wpa_supplicant is a WPA Supplicant for Linux, BSD and Windows with support

for WPA and WPA2 (IEEE 802.11i / RSN). Supplicant is the IEEE 802.1X/WPA

component that is used in the client stations. It implements key negotiation

with a WPA Authenticator and it controls the roaming and IEEE 802.11

authentication/association of the wlan driver.

Update Information:

The update adds a patch for the security issue in bug 1241907.

Change Log

* Wed Jul 15 2015 Jiří Klimeš - 1:2.0-14 - Fix for NDEF record payload length checking (rh #1241907) * Thu Apr 23 2015 Adam Williamson - 1:2.0-13 - backport fix for CVE-2015-1863

References


[ 1 ] Bug #1241907 - hostapd and wpa_supplicant: Incomplete WPS and P2P NFC NDEF record payload length validation [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1241907

Update Instructions

This update can be installed with the "yum" update program. Use su -c 'yum update wpa_supplicant' at the command line. For more information, refer to "Managing Software with yum", available at .

Name: wpa_supplicant
Product: Fedora 21
Version: 2.0
Release: 14.fc21
Summary: WPA/WPA2/IEEE 802.1X Supplicant

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.