First published: Tue Aug 06 2024(Updated: )
Rory McNamara discovered that wpa_supplicant could be made to load arbitrary shared objects by unprivileged users that have access to the control interface. An attacker could use this to escalate privileges to root.
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/wpasupplicant | <2:2.10-21ubuntu0.1 | 2:2.10-21ubuntu0.1 |
Ubuntu Ubuntu | =24.04 | |
All of | ||
ubuntu/wpasupplicant | <2:2.10-6ubuntu2.1 | 2:2.10-6ubuntu2.1 |
Ubuntu Ubuntu | =22.04 | |
All of | ||
ubuntu/wpasupplicant | <2:2.9-1ubuntu4.4 | 2:2.9-1ubuntu4.4 |
Ubuntu Ubuntu | =20.04 | |
All of | ||
ubuntu/wpasupplicant | <2:2.6-15ubuntu2.8+esm1 | 2:2.6-15ubuntu2.8+esm1 |
Ubuntu Ubuntu | =18.04 | |
All of | ||
ubuntu/wpasupplicant | <2.4-0ubuntu6.8+esm1 | 2.4-0ubuntu6.8+esm1 |
Ubuntu Ubuntu | =16.04 | |
All of | ||
ubuntu/wpasupplicant | <2.1-0ubuntu1.7+esm5 | 2.1-0ubuntu1.7+esm5 |
Ubuntu Ubuntu | =14.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.