SHA256
1
0
forked from pool/hostapd

[http://w1.fi/security/2015-2/] (CVE-2015-4141 bsc#930077)

[http://w1.fi/security/2015-3/] (CVE-2015-4142 bsc#930078)
	  (CVE-2015-4143, CVE-2015-4144, CVE-2015-4145, bsc#930079)

OBS-URL: https://build.opensuse.org/package/show/Base:System/hostapd?expand=0&rev=36
This commit is contained in:
Marcus Meissner 2015-11-21 17:12:59 +00:00 committed by Git OBS Bridge
parent 38ebc7f418
commit 4f920c9df8

View File

@ -10,12 +10,12 @@ ChangeLog for hostapd since 2.4:
2015-09-27 - v2.5 2015-09-27 - v2.5
* fixed WPS UPnP vulnerability with HTTP chunked transfer encoding * fixed WPS UPnP vulnerability with HTTP chunked transfer encoding
[http://w1.fi/security/2015-2/] (CVE-2015-4141) [http://w1.fi/security/2015-2/] (CVE-2015-4141 bsc#930077)
* fixed WMM Action frame parser * fixed WMM Action frame parser
[http://w1.fi/security/2015-3/] (CVE-2015-4142) [http://w1.fi/security/2015-3/] (CVE-2015-4142 bsc#930078)
* fixed EAP-pwd server missing payload length validation * fixed EAP-pwd server missing payload length validation
[http://w1.fi/security/2015-4/] [http://w1.fi/security/2015-4/]
(CVE-2015-4143, CVE-2015-4144, CVE-2015-4145) (CVE-2015-4143, CVE-2015-4144, CVE-2015-4145, bsc#930079)
* fixed validation of WPS and P2P NFC NDEF record payload length * fixed validation of WPS and P2P NFC NDEF record payload length
[http://w1.fi/security/2015-5/] [http://w1.fi/security/2015-5/]
* nl80211: * nl80211: