HIGH
Stack-based buffer overflow in net80211/ieee80211_wireless.c in MadWifi before 0.9.2.1 allows remote attackers to execute arbitrary code via unspecified vectors, related to the encode_ie and giwscan_cb functions
Published Dec 10, 2006
7.5
HIGHCVSS 2.0
EPSS 20.30%
Description
Stack-based buffer overflow in net80211/ieee80211_wireless.c in MadWifi before 0.9.2.1 allows remote attackers to execute arbitrary code via unspecified vectors, related to the encode_ie and giwscan_cb functions.
Affected products
Remediation
Red Hat statement
Not vulnerable. The MadWiFi wireless driver is not shipped with Red Hat Enterprise Linux 2.1, 3, 4, or 5.
Weaknesses (0)
No CWE recorded.
References (17)
- http://lists.immunitysec.com/pipermail/dailydave/2006-December/003888.html mailing-listx_refsource_MLIST
- http://madwifi.org/changeset/1842 x_refsource_MISCPatch
- http://madwifi.org/wiki/news/20061207/release-0-9-2-1-fixes-critical-security-issue x_refsource_CONFIRM
- http://secunia.com/advisories/23277 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/23335 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/23694 third-party-advisoryx_refsource_SECUNIA
- http://security.gentoo.org/glsa/glsa-200612-09.xml vendor-advisoryx_refsource_GENTOO
- http://www.kb.cert.org/vuls/id/925529 third-party-advisoryx_refsource_CERT-VNUS Government Resource
- http://www.novell.com/linux/security/advisories/2006_28_sr.html vendor-advisoryx_refsource_SUSE
- http://www.novell.com/linux/security/advisories/2006_74_madwifi.html vendor-advisoryx_refsource_SUSE
- http://www.securityfocus.com/bid/21486 vdb-entryx_refsource_BIDPatch
- http://www.ubuntu.com/usn/usn-404-1 vendor-advisoryx_refsource_UBUNTU
- http://www.vupen.com/english/advisories/2006/4901 vdb-entryx_refsource_VUPEN
- https://access.redhat.com/security/cve/CVE-2006-6332 Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/30800 vdb-entryx_refsource_XF
- https://nvd.nist.gov/vuln/detail/CVE-2006-6332
- https://www.cve.org/CVERecord?id=CVE-2006-6332
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Dec 10, 2006
Updated Aug 7, 2024
Reserved Dec 6, 2006
Link CVE-2006-6332
CISA Vulnrichment
Updated n/a