HIGH
ieee80211_input.c in MadWifi before 0.9.3 does not properly process Channel Switch Announcement Information Elements (CSA IEs), which allows remote attackers to cause a denial of service (loss of communication) via a Channel Switch Count less than or equal to one, triggering a channel change
Published Mar 30, 2007
7.8
HIGHCVSS 2.0
EPSS 2.60%
Description
ieee80211_input.c in MadWifi before 0.9.3 does not properly process Channel Switch Announcement Information Elements (CSA IEs), which allows remote attackers to cause a denial of service (loss of communication) via a Channel Switch Count less than or equal to one, triggering a channel change.
Affected products
Remediation
Red Hat statement
Not vulnerable. The MadWiFi wireless driver is not shipped with Red Hat Enterprise Linux 2.1, 3, 4, or 5.
Weaknesses (0)
No CWE recorded.
References (19)
- http://dev.lintrack.org/ticket/101 x_refsource_MISC
- http://madwifi.org/ticket/963 x_refsource_CONFIRM
- http://madwifi.org/wiki/Releases/0.9.3 x_refsource_CONFIRM
- http://secunia.com/advisories/24670 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/24841 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/24931 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/25861 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/26083 third-party-advisoryx_refsource_SECUNIA
- http://security.gentoo.org/glsa/glsa-200704-15.xml vendor-advisoryx_refsource_GENTOO
- http://www.mandriva.com/security/advisories?name=MDKSA-2007:082 vendor-advisoryx_refsource_MANDRIVA
- http://www.novell.com/linux/security/advisories/2007_14_sr.html vendor-advisoryx_refsource_SUSE
- http://www.osvdb.org/34645 vdb-entryx_refsource_OSVDB
- http://www.securityfocus.com/archive/1/466689/30/6900/threaded mailing-listx_refsource_BUGTRAQ
- http://www.securityfocus.com/bid/23436 vdb-entryx_refsource_BID
- http://www.ubuntu.com/usn/usn-479-1 vendor-advisoryx_refsource_UBUNTU
- http://www.vupen.com/english/advisories/2007/1187 vdb-entryx_refsource_VUPEN
- https://access.redhat.com/security/cve/CVE-2006-7179 Vendor Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2006-7179
- https://www.cve.org/CVERecord?id=CVE-2006-7179
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Mar 30, 2007
Updated Aug 7, 2024
Reserved Mar 29, 2007
Link CVE-2006-7179
CISA Vulnrichment
Updated n/a