CVE-2014-8321: Buffer Overflow
It was reported [1] that four vulnerabilities exist on aircrack-ng <= 1.2 Beta 3 which allow remote/local code execution, privilege escalation and denial of service. Specifically, the following vulnerabilities were identified: - CVE-2014-8321 A stack overflow at airodump-ng gpstracker() which may lead to code execution, privilege escalation. https://github.com/aircrack-ng/aircrack-ng/commit/ff70494dd389ba570dbdbf36f217c28d4381c6b5 - CVE-2014-8322 A length parameter inconsistency at aireplay tcptest() which may lead to remote code execution. https://github.com/aircrack-ng/aircrack-ng/commit/091b153f294b9b695b0b2831e65936438b550d7b - CVE-2014-8323 A missing check for data format at buddy-ng which may lead to denial of service. https://github.com/aircrack-ng/aircrack-ng/commit/da087238963c1239fdabd47dc1b65279605aca70 - CVE-2014-8324 A missing check for invalid values at airserv-ng netget() which may lead to denial of service. https://github.com/aircrack-ng/aircrack-ng/commit/88702a3ce4c28a973bf69023cd0312f412f6193e
Soon a new version will be released but at the time there is no patched version.
[1]: http://seclists.org/bugtraq/2014/Nov/1
Other sources
Stack-based buffer overflow in the gpstracker function in airodump-ng.c in Aircrack-ng before 1.2 RC 1 allows local users to execute arbitrary code or gain privileges via unspecified vectors.
— MITRE
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2014-8321?
CVE-2014-8321 has been classified as a critical vulnerability due to its potential for remote code execution and privilege escalation.
How do I fix CVE-2014-8321?
To fix CVE-2014-8321, update Aircrack-ng to version 1.2 or later, as versions up to 1.2 Beta 3 are affected.
What versions of Aircrack-ng are affected by CVE-2014-8321?
CVE-2014-8321 affects Aircrack-ng versions up to and including 1.2 Beta 3.
Can CVE-2014-8321 be exploited remotely?
Yes, CVE-2014-8321 can be exploited remotely, allowing attackers to execute arbitrary code.
What are the consequences of exploiting CVE-2014-8321?
Exploiting CVE-2014-8321 may result in remote code execution, privilege escalation, or denial of service.