ieee80211_output.c in MadWifi before 0.9.3 sends unencrypted packets before WPA authentication succeeds, which allows remote attackers to obtain sensitive information (related to network structure), and possibly cause a denial of service (disrupted authentication) and conduct spoofing attacks.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Madwifi | Madwifi | * | 0.9.2 (including) |
Linux-restricted-modules-2.6.15 | Ubuntu | dapper | * |
Linux-restricted-modules-2.6.17 | Ubuntu | edgy | * |
Linux-restricted-modules-2.6.20 | Ubuntu | feisty | * |