EAP-pwd Message Buffer Vulnerability in Hostapd
CVE-2015-5314

5.9MEDIUM

Key Information:

Vendor

W1.fi

Vendor
CVE Published:
21 February 2018

What is CVE-2015-5314?

The eap_pwd_process function within the Hostapd software fails to ensure that the reassembly buffer has sufficient size for the final fragment when using an internal EAP server or a RADIUS server with EAP-pwd enabled. This oversight could be exploited by remote attackers, allowing them to send a large final fragment in an EAP-pwd message, potentially leading to the termination of the associated process and rendering the service unavailable.

References

CVSS V3.1

Score:
5.9
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.