ieee80211_output.c in MadWifi before 0.9.3 sends unencrypted packets before WPA authentication succeeds, which allows remote attackers to obtain sensitive information (related to network structure), and possibly cause a denial of service (disrupted authentication) and conduct spoofing attacks.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Madwifi | Madwifi | * | 0.9.2 (including) |
| Linux-restricted-modules-2.6.15 | Ubuntu | dapper | * |
| Linux-restricted-modules-2.6.17 | Ubuntu | edgy | * |
| Linux-restricted-modules-2.6.20 | Ubuntu | feisty | * |