[arch-general] is arch vulnerable to the ndiswrapper exploit?

Aaron Griffin aaronmgriffin at gmail.com
Thu Nov 6 17:25:47 EST 2008


On Thu, Nov 6, 2008 at 4:21 PM, Jonathan <eyeswide at gmail.com> wrote:
> I came across this in the news today, it seems to be a pretty big
> security hole in ndiswrapper.
>
> "Multiple buffer overflows in the ndiswrapper module 1.53 for the Linux
> kernel 2.6 allow remote attackers to execute arbitrary code by sending
> packets over a local wireless network that specify long ESSIDs."
>
> http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-4395
> https://bugs.launchpad.net/ubuntu/+source/linux/+bug/275860

Probably. File a bug report in the bug tracker and we'll get on it



More information about the arch-general mailing list