We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.
Please see our statement on Data Privacy.
Assigner | freebsd |
Reserved | 2022-01-10 |
Published | 2024-02-15 |
Updated | 2024-08-03 |
The 802.11 beacon handling routine failed to validate the length of an IEEE 802.11s Mesh ID before copying it to a heap-allocated buffer. While a FreeBSD Wi-Fi client is in scanning mode (i.e., not associated with a SSID) a malicious beacon frame may overwrite kernel memory, leading to remote code execution.
m00nbsd
Trend Micro Zero Day Initiative
https://security.freebsd.org/advisories/FreeBSD-SA-22:07.wifi_meshid.asc