CVE-2014-3686
Publication date 9 October 2014
Last updated 24 July 2024
Ubuntu priority
Description
wpa_supplicant and hostapd 0.7.2 through 2.2, when running with certain configurations and using wpa_cli or hostapd_cli with action scripts, allows remote attackers to execute arbitrary commands via a crafted frame.
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| hostapd | ||
| 16.04 LTS xenial | Not in release | |
| 14.04 LTS trusty | Not in release | |
| wpa | ||
| 16.04 LTS xenial |
Fixed 2.1-0ubuntu4
|
|
| 14.04 LTS trusty |
Fixed 2.1-0ubuntu1.1
|
|
| wpasupplicant | ||
| 16.04 LTS xenial | Not in release | |
| 14.04 LTS trusty | Not in release | |
Patch details
| Package | Patch details |
|---|---|
| hostapd |
|
| wpasupplicant |
|
References
Related Ubuntu Security Notices (USN)
- USN-2383-1
- wpa_supplicant vulnerability
- 14 October 2014