Skip to main content

Vendor/product archive

madwifi / madwifi CVEs

Beta · best-effort

10 CVEs tagged to madwifi / madwifi1 Critical, 5 High, 4 Medium, 0 Low, 0 Unrated.

CVE-2007-5448

Published Oct 14, 2007

Madwifi 0.9.3.2 and earlier allows remote attackers to cause a denial of service (panic) via a beacon frame with a large length value in the extended supported rates (xrates) elem…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-2829

Published May 24, 2007

The 802.11 network stack in net80211/ieee80211_input.c in MadWifi before 0.9.3.1 allows remote attackers to cause a denial of service (system hang) via a crafted length field in n…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-2830

Published May 24, 2007

The ath_beacon_config function in if_ath.c in MadWifi before 0.9.3.1 allows remote attackers to cause a denial of service (system crash) via crafted beacon interval information wh…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-2831

Published May 24, 2007

Array index error in the (1) ieee80211_ioctl_getwmmparams and (2) ieee80211_ioctl_setwmmparams functions in net80211/ieee80211_wireless.c in MadWifi before 0.9.3.1 allows local us…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2006-7177

Published Mar 30, 2007

MadWifi, when Ad-Hoc mode is used, allows remote attackers to cause a denial of service (system crash) via unspecified vectors that lead to a kernel panic in the ieee80211_input f…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2006-7178

Published Mar 30, 2007

MadWifi before 0.9.3 does not properly handle reception of an AUTH frame by an IBSS node, which allows remote attackers to cause a denial of service (system crash) via a certain A…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2006-7179

Published Mar 30, 2007

ieee80211_input.c in MadWifi before 0.9.3 does not properly process Channel Switch Announcement Information Elements (CSA IEs), which allows remote attackers to cause a denial of…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2006-7180

Published Mar 30, 2007

ieee80211_output.c in MadWifi before 0.9.3 sends unencrypted packets before WPA authentication succeeds, which allows remote attackers to obtain sensitive information (related to…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-6332

Published Dec 10, 2006

Stack-based buffer overflow in net80211/ieee80211_wireless.c in MadWifi before 0.9.2.1 allows remote attackers to execute arbitrary code via unspecified vectors, related to the en…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2005-4835

Published Dec 31, 2005

The ath_rate_sample function in the ath_rate/sample/sample.c sample code in MadWifi before 0.9.3 allows remote attackers to cause a denial of service (failed KASSERT and system cr…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort
Showing 1-10 of 10 CVEsPage 1 of 1