4.3
CVSSv2

CVE-2013-4579

Published: 20/11/2013 Updated: 16/03/2014
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:P/I:N/A:N

Vulnerability Summary

The ath9k_htc_set_bssid_mask function in drivers/net/wireless/ath/ath9k/htc_drv_main.c in the Linux kernel up to and including 3.12 uses a BSSID masking approach to determine the set of MAC addresses on which a Wi-Fi device is listening, which allows remote malicious users to discover the original MAC address after spoofing by sending a series of packets to MAC addresses with certain bit manipulations.

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel

linux linux kernel 3.11.7

linux linux kernel 3.10.1

linux linux kernel 3.10.10

linux linux kernel 3.10.6

linux linux kernel 3.10.7

linux linux kernel 3.11.5

linux linux kernel 3.11.6

linux linux kernel 3.0

linux linux kernel 3.0.1

linux linux kernel 3.0.16

linux linux kernel 3.0.17

linux linux kernel 3.0.24

linux linux kernel 3.0.25

linux linux kernel 3.0.31

linux linux kernel 3.0.32

linux linux kernel 3.0.39

linux linux kernel 3.0.4

linux linux kernel 3.0.47

linux linux kernel 3.0.48

linux linux kernel 3.0.54

linux linux kernel 3.0.55

linux linux kernel 3.0.61

linux linux kernel 3.0.62

linux linux kernel 3.0.63

linux linux kernel 3.0.8

linux linux kernel 3.0.9

linux linux kernel 3.1.10

linux linux kernel 3.1.2

linux linux kernel 3.9.7

linux linux kernel 3.9.6

linux linux kernel 3.2

linux linux kernel 3.2.13

linux linux kernel 3.2.14

linux linux kernel 3.2.21

linux linux kernel 3.2.22

linux linux kernel 3.2.29

linux linux kernel 3.2.3

linux linux kernel 3.2.9

linux linux kernel 3.3

linux linux kernel 3.3.1

linux linux kernel 3.3.2

linux linux kernel 3.4

linux linux kernel 3.4.1

linux linux kernel 3.4.10

linux linux kernel 3.4.18

linux linux kernel 3.4.19

linux linux kernel 3.4.25

linux linux kernel 3.4.26

linux linux kernel 3.4.32

linux linux kernel 3.4.4

linux linux kernel 3.4.5

linux linux kernel 3.5.3

linux linux kernel 3.5.4

linux linux kernel 3.6.11

linux linux kernel 3.6.2

linux linux kernel 3.6.9

linux linux kernel 3.7

linux linux kernel 3.7.1

linux linux kernel 3.7.7

linux linux kernel 3.7.8

linux linux kernel 3.8.13

linux linux kernel 3.8.2

linux linux kernel 3.9

linux linux kernel 3.10.16

linux linux kernel 3.10.15

linux linux kernel 3.10.2

linux linux kernel 3.10.3

linux linux kernel 3.11

linux linux kernel 3.11.1

linux linux kernel 3.0.12

linux linux kernel 3.0.13

linux linux kernel 3.0.2

linux linux kernel 3.0.20

linux linux kernel 3.0.21

linux linux kernel 3.0.28

linux linux kernel 3.0.29

linux linux kernel 3.0.35

linux linux kernel 3.0.36

linux linux kernel 3.0.43

linux linux kernel 3.0.44

linux linux kernel 3.0.50

linux linux kernel 3.0.51

linux linux kernel 3.0.58

linux linux kernel 3.0.59

linux linux kernel 3.0.66

linux linux kernel 3.0.67

linux linux kernel 3.1

linux linux kernel 3.1.5

linux linux kernel 3.1.6

linux linux kernel 3.9.3

linux linux kernel 3.2.1

linux linux kernel 3.2.10

linux linux kernel 3.2.17

linux linux kernel 3.2.18

linux linux kernel 3.2.25

linux linux kernel 3.2.26

linux linux kernel 3.2.5

linux linux kernel 3.2.6

linux linux kernel 3.3.5

linux linux kernel 3.3.6

linux linux kernel 3.4.14

linux linux kernel 3.4.15

linux linux kernel 3.4.21

linux linux kernel 3.4.22

linux linux kernel 3.4.29

linux linux kernel 3.4.3

linux linux kernel 3.4.8

linux linux kernel 3.4.9

linux linux kernel 3.5.7

linux linux kernel 3.6

linux linux kernel 3.6.5

linux linux kernel 3.6.6

linux linux kernel 3.7.3

linux linux kernel 3.7.4

linux linux kernel 3.8.1

linux linux kernel 3.8.10

linux linux kernel 3.8.5

linux linux kernel 3.8.6

linux linux kernel 3.1.9

linux linux kernel 3.1.8

linux linux kernel 3.9.1

linux linux kernel 3.9.10

linux linux kernel 3.10.18

linux linux kernel 3.10.17

linux linux kernel 3.10.11

linux linux kernel 3.10.12

linux linux kernel 3.10.8

linux linux kernel 3.10.9

linux linux kernel 3.0.10

linux linux kernel 3.0.11

linux linux kernel 3.0.18

linux linux kernel 3.0.19

linux linux kernel 3.0.26

linux linux kernel 3.0.27

linux linux kernel 3.0.33

linux linux kernel 3.0.34

linux linux kernel 3.0.40

linux linux kernel 3.0.41

linux linux kernel 3.0.42

linux linux kernel 3.0.49

linux linux kernel 3.0.5

linux linux kernel 3.0.56

linux linux kernel 3.0.57

linux linux kernel 3.0.64

linux linux kernel 3.0.65

linux linux kernel 3.1.3

linux linux kernel 3.1.4

linux linux kernel 3.9.5

linux linux kernel 3.9.4

linux linux kernel 3.2.15

linux linux kernel 3.2.16

linux linux kernel 3.2.23

linux linux kernel 3.2.24

linux linux kernel 3.2.30

linux linux kernel 3.2.4

linux linux kernel 3.3.3

linux linux kernel 3.3.4

linux linux kernel 3.4.11

linux linux kernel 3.4.12

linux linux kernel 3.4.13

linux linux kernel 3.4.2

linux linux kernel 3.4.20

linux linux kernel 3.4.27

linux linux kernel 3.4.28

linux linux kernel 3.4.6

linux linux kernel 3.4.7

linux linux kernel 3.5.5

linux linux kernel 3.5.6

linux linux kernel 3.6.3

linux linux kernel 3.6.4

linux linux kernel 3.7.10

linux linux kernel 3.7.2

linux linux kernel 3.7.9

linux linux kernel 3.8.0

linux linux kernel 3.8.3

linux linux kernel 3.8.4

linux linux kernel 3.9.11

linux linux kernel 3.9.2

linux linux kernel 3.10.14

linux linux kernel 3.10.13

linux linux kernel 3.10.4

linux linux kernel 3.10.5

linux linux kernel 3.11.2

linux linux kernel 3.11.3

linux linux kernel 3.11.4

linux linux kernel 3.0.14

linux linux kernel 3.0.15

linux linux kernel 3.0.22

linux linux kernel 3.0.23

linux linux kernel 3.0.3

linux linux kernel 3.0.30

linux linux kernel 3.0.37

linux linux kernel 3.0.38

linux linux kernel 3.0.45

linux linux kernel 3.0.46

linux linux kernel 3.0.52

linux linux kernel 3.0.53

linux linux kernel 3.0.6

linux linux kernel 3.0.60

linux linux kernel 3.0.68

linux linux kernel 3.0.7

linux linux kernel 3.1.1

linux linux kernel 3.1.7

linux linux kernel 3.9.9

linux linux kernel 3.9.8

linux linux kernel 3.2.11

linux linux kernel 3.2.12

linux linux kernel 3.2.19

linux linux kernel 3.2.2

linux linux kernel 3.2.20

linux linux kernel 3.2.27

linux linux kernel 3.2.28

linux linux kernel 3.2.7

linux linux kernel 3.2.8

linux linux kernel 3.3.7

linux linux kernel 3.3.8

linux linux kernel 3.4.16

linux linux kernel 3.4.17

linux linux kernel 3.4.23

linux linux kernel 3.4.24

linux linux kernel 3.4.30

linux linux kernel 3.4.31

linux linux kernel 3.5.1

linux linux kernel 3.5.2

linux linux kernel 3.6.1

linux linux kernel 3.6.10

linux linux kernel 3.6.7

linux linux kernel 3.6.8

linux linux kernel 3.7.5

linux linux kernel 3.7.6

linux linux kernel 3.8.11

linux linux kernel 3.8.12

linux linux kernel 3.8.7

linux linux kernel 3.8.8

linux linux kernel 3.8.9

linux linux kernel 3.9.0

Vendor Advisories

Debian Bug report logs - #733551 Sanitation of CPU-state when switching from virtual-8086 mode to other task incomplete (CVE-2014-1438) Package: src:linux; Maintainer for src:linux is Debian Kernel Team <debian-kernel@listsdebianorg>; Reported by: halfdog <me@halfdognet> Date: Sun, 29 Dec 2013 21:48:07 UTC Severit ...
Debian Bug report logs - #729573 linux-image-320-4-amd64: CVE-2013-4579: [ath9k_htc] MAC address not properly updated Package: src:linux; Maintainer for src:linux is Debian Kernel Team <debian-kernel@listsdebianorg>; Reported by: Mathy Vanhoef <mathyvanhoef@cskuleuvenbe> Date: Thu, 14 Nov 2013 13:51:01 UTC Sev ...
Several security issues were fixed in the kernel ...
Several security issues were fixed in the kernel ...
Several security issues were fixed in the kernel ...
Several security issues were fixed in the kernel ...
Several security issues were fixed in the kernel ...
Several security issues were fixed in the kernel ...
Several security issues were fixed in the kernel ...
Several security issues were fixed in the kernel ...
Several security issues were fixed in the kernel ...

Exploits

source: wwwsecurityfocuscom/bid/63743/info Linux Kernel is prone to an information-disclosure vulnerability An attacker can exploit this issue to obtain sensitive information like original MAC address; information obtained may aid in other attacks Note: This BID was previously titled 'Atheros Wireless Drivers MAC Address Information D ...