CVE-2015-1863: Buffer Overflow
Heap-based buffer overflow in wpasupplicant 1.0 through 2.4 allows remote attackers to cause a denial of service (crash), read memory, or possibly execute arbitrary code via crafted SSID information in a management frame when creating or updating P2P entries.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-1863?
CVE-2015-1863 is classified as a high severity vulnerability that can lead to denial of service and potentially arbitrary code execution.
How do I fix CVE-2015-1863?
To fix CVE-2015-1863, ensure you update the wpa_supplicant software to version 2.4 or later.
What versions of wpa_supplicant are affected by CVE-2015-1863?
The affected versions of wpa_supplicant are 1.0 through 2.4.
Can CVE-2015-1863 be exploited remotely?
Yes, CVE-2015-1863 can be exploited remotely via crafted SSID information in a management frame.
What systems are specifically vulnerable to CVE-2015-1863?
CVE-2015-1863 affects various Ubuntu Linux versions, Red Hat Enterprise Linux variants, Debian, and openSUSE.