SHA256
1
0
forked from pool/hostapd

[http://w1.fi/security/2015-2/] (CVE-2015-4141 bsc#930077)

[http://w1.fi/security/2015-3/] (CVE-2015-4142 bsc#930078)
	  (CVE-2015-4143, CVE-2015-4144, CVE-2015-4145, bsc#930079)

OBS-URL: https://build.opensuse.org/package/show/Base:System/hostapd?expand=0&rev=36
This commit is contained in:
Marcus Meissner 2015-11-21 17:12:59 +00:00 committed by Git OBS Bridge
parent 38ebc7f418
commit 4f920c9df8

View File

@ -10,12 +10,12 @@ ChangeLog for hostapd since 2.4:
2015-09-27 - v2.5
* fixed WPS UPnP vulnerability with HTTP chunked transfer encoding
[http://w1.fi/security/2015-2/] (CVE-2015-4141)
[http://w1.fi/security/2015-2/] (CVE-2015-4141 bsc#930077)
* fixed WMM Action frame parser
[http://w1.fi/security/2015-3/] (CVE-2015-4142)
[http://w1.fi/security/2015-3/] (CVE-2015-4142 bsc#930078)
* fixed EAP-pwd server missing payload length validation
[http://w1.fi/security/2015-4/]
(CVE-2015-4143, CVE-2015-4144, CVE-2015-4145)
(CVE-2015-4143, CVE-2015-4144, CVE-2015-4145, bsc#930079)
* fixed validation of WPS and P2P NFC NDEF record payload length
[http://w1.fi/security/2015-5/]
* nl80211: