The 802.11 network stack in net80211/ieee80211_input.c in MadWifi prior to 0.9.3.1 allows remote malicious users to cause a denial of service (system hang) via a crafted length field in nested 802.3 Ethernet frames in Fast Frame packets, which results in a NULL pointer dereference.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
madwifi madwifi |
||
madwifi madwifi 0.9.0 |
||
madwifi madwifi 0.9.1 |
||
madwifi madwifi 0.9.2 |
||
madwifi madwifi 0.9.2.1 |