USN-6945-1: wpa_supplicant and hostapd vulnerability
Rory McNamara discovered that wpasupplicant could be made to load arbitrary shared objects by unprivileged users that have access to the control interface. An attacker could use this to escalate privileges to root.
Affected Software
Event History
Frequently Asked Questions
What is the severity of USN-6945-1?
USN-6945-1 is classified as a high severity vulnerability due to the potential for privilege escalation.
How do I fix USN-6945-1?
To mitigate USN-6945-1, upgrade wpa_supplicant to the recommended fixed version as specified in the advisory.
Who is affected by USN-6945-1?
USN-6945-1 affects users of Ubuntu systems running specific versions of wpa_supplicant, as detailed in the security advisory.
What is the impact of USN-6945-1?
The impact of USN-6945-1 allows unprivileged users to load arbitrary shared objects potentially escalating their privileges to root.
What versions of Ubuntu are vulnerable to USN-6945-1?
USN-6945-1 affects several versions of Ubuntu, including 14.04, 16.04, 18.04, 20.04, 22.04, and 24.04 with specific wpa_supplicant versions.