Page MenuHomeFreeBSD

wpa_supplicant: Fix CVE-2015-1863
AbandonedPublic

Authored by kwm on May 4 2015, 10:47 AM.
Tags
None
Referenced Files
Unknown Object (File)
Tue, Oct 14, 2:41 AM
Unknown Object (File)
Sat, Sep 27, 1:51 AM
Unknown Object (File)
Sep 18 2025, 2:06 AM
Unknown Object (File)
Sep 8 2025, 4:52 PM
Unknown Object (File)
Sep 1 2025, 12:14 PM
Unknown Object (File)
Aug 30 2025, 4:29 PM
Unknown Object (File)
Aug 26 2025, 3:02 AM
Unknown Object (File)
Aug 22 2025, 12:57 AM
Subscribers

Details

Reviewers
dumbbell
rpaulo
Summary

Fix CVE in wpa_supplicant inspired by
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=199678

This should probably be MFC'd to the stable- and release branches.
But maybe we should get a so@ on boat for that? As a port person I'm
not familiar with the workflow to so such.

Test Plan

make buildworld
Install and using it at run-time.

Diff Detail

Repository
rS FreeBSD src repository - subversion
Lint
No Lint Coverage
Unit
No Test Coverage

Event Timeline

kwm retitled this revision from to wpa_supplicant: Fix CVE-2015-1863.
kwm updated this object.
kwm edited the test plan for this revision. (Show Details)

wpa_supplicant is maintained in a vendor branch before being imported into base:
https://svnweb.freebsd.org/base/vendor/wpa/

I suppose your patch needs to go there first, but I never worked with vendor import. @rpaulo will know better :-)

If you really must, go ahead and commit this patch, but please understand this code was never compiled in FreeBSD.