tags 446824 pending thanks On Tue, 16 Oct 2007 08:37:31 am Nico Golde wrote: > | Madwifi 0.9.3.2 and earlier allows remote attackers to cause a denial > | of service (panic) via a beacon frame with a large length value in the > | extended supported rates (xrates) element, which triggers an assertion > | error, related to net80211/ieee80211_scan_ap.c and > | net80211/ieee80211_scan_sta.c.
net80211/ieee80211_scan_ap.c in not vulnerable in any stable release from madwifi.org[0], the CVE is slightly misleading in regards to that detail. Package awaiting sponsorship. Thanks, Kel. [0] http://madwifi.org/changeset/2749 -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]