[arch-general] is arch vulnerable to the ndiswrapper exploit?

Jonathan eyeswide at gmail.com
Thu Nov 6 17:21:29 EST 2008


I came across this in the news today, it seems to be a pretty big
security hole in ndiswrapper.

"Multiple buffer overflows in the ndiswrapper module 1.53 for the Linux
kernel 2.6 allow remote attackers to execute arbitrary code by sending
packets over a local wireless network that specify long ESSIDs."

http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-4395
https://bugs.launchpad.net/ubuntu/+source/linux/+bug/275860

Jonathan




More information about the arch-general mailing list