wpa_supplicant: Buffer overflow vulnerability wpa_supplicant contains a buffer overflow that could lead to a Denial of Service. wpa_supplicant 2005-02-16 2006-05-22 81993 remote 0.2.7 0.2.7

wpa_supplicant is a WPA Supplicant with support for WPA and WPA2 (IEEE 802.11i / RSN).

wpa_supplicant contains a possible buffer overflow due to the lacking validation of received EAPOL-Key frames.

An attacker could cause the crash of wpa_supplicant using a specially crafted packet.

There is no known workaround at this time.

All wpa_supplicant users should upgrade to the latest version:

# emerge --sync # emerge --ask --oneshot --verbose ">=net-wireless/wpa_supplicant-0.2.7"
wpa_supplicant Announcement CVE-2005-0470 jaervosz koon vorlon078