CVE-2014-8322

Stack-based buffer overflow in the tcp_test function in aireplay-ng.c in Aircrack-ng before 1.2 RC 1 allows remote attackers to execute arbitrary code via a crafted length parameter value.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:aircrack-ng:aircrack-ng:*:*:*:*:*:*:*:*
cpe:2.3:a:aircrack-ng:aircrack-ng:1.2:beta1:*:*:*:*:*:*
cpe:2.3:a:aircrack-ng:aircrack-ng:1.2:beta2:*:*:*:*:*:*
cpe:2.3:a:aircrack-ng:aircrack-ng:1.2:beta3:*:*:*:*:*:*

History

21 Nov 2024, 02:18

Type Values Removed Values Added
References () http://aircrack-ng.blogspot.com/2014/10/aircrack-ng-12-release-candidate-1.html - Product, Release Notes, Third Party Advisory () http://aircrack-ng.blogspot.com/2014/10/aircrack-ng-12-release-candidate-1.html - Product, Release Notes, Third Party Advisory
References () http://packetstormsecurity.com/files/128943/Aircrack-ng-1.2-Beta-3-DoS-Code-Execution.html - Third Party Advisory, VDB Entry () http://packetstormsecurity.com/files/128943/Aircrack-ng-1.2-Beta-3-DoS-Code-Execution.html - Third Party Advisory, VDB Entry
References () http://www.exploit-db.com/exploits/35018 - Third Party Advisory, VDB Entry () http://www.exploit-db.com/exploits/35018 - Third Party Advisory, VDB Entry
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/98459 - Third Party Advisory, VDB Entry () https://exchange.xforce.ibmcloud.com/vulnerabilities/98459 - Third Party Advisory, VDB Entry
References () https://github.com/aircrack-ng/aircrack-ng/commit/091b153f294b9b695b0b2831e65936438b550d7b - Patch, Third Party Advisory () https://github.com/aircrack-ng/aircrack-ng/commit/091b153f294b9b695b0b2831e65936438b550d7b - Patch, Third Party Advisory
References () https://github.com/aircrack-ng/aircrack-ng/pull/14 - Patch, Third Party Advisory () https://github.com/aircrack-ng/aircrack-ng/pull/14 - Patch, Third Party Advisory

Information

Published : 2020-01-31 22:15

Updated : 2024-11-21 02:18


NVD link : CVE-2014-8322

Mitre link : CVE-2014-8322

CVE.ORG link : CVE-2014-8322


JSON object : View

Products Affected

aircrack-ng

  • aircrack-ng
CWE
CWE-787

Out-of-bounds Write