Newsletter:

Skip Navigation LinksHome > News > Security > Major flaw found in Wi-Fi Linux

Major flaw found in Wi-Fi Linux

By Iain Thomson
17 April 2007 02:46PM
Tags: major | flaw | wifi | linux

Researcher held back news until patch was released.

A major flaw that imperils Linux users of Wi-Fi has been found in the widely-used MadWiFi Linux kernel device driver for Atheros-based Wi-Fi chipsets.

The kernel stack-overflow bug could be used to take control of computers, even if they are not on a Wi-Fi network.

"You may be vulnerable if you do not manually patch your MadWi-Fi driver," Laurent Butti, a researcher from France Telecom Orange who discovered the issue, told the Washington Post.

Butti gave details of the flaw at last month's Black Hat Briefing convention, where security researchers and hackers meet to exchange ideas and information.

But the news was held back from general release until a patch had been built and distributed.

Butti found the flaw by 'fuzzing' the code. This involves feeding the software random data until it crashes and reveals a flaw.

He is now turning his attention to WiMax and wireless USB.

Copyright © 2008 vnunet.com

   


Ads by Google



Product Reviews

Star Rating
NetIQ's Secure Configuration Manager (SCM) is a combination of client server and web-based components to help...
Star Rating
Secure Bytes Secure Auditor is actually a suite comprised of several different pieces designed to audit...
Star Rating
For this review, I decided to combine these products into a single group of their own. Please keep in mind...
Star Rating
The netVigilance SecureScout EagleBox SP 2.0 is a highly comprehensive vulnerability management product.
Star Rating
The StillSecure VAM appliance is serious vulnerability management in a single device.


TopTopics
(4923) -  microsoft
(3202) -  google
(2345) -  internet
(2334) -  ibm
(2303) -  telstra
(2218) -  intel
(1780) -  network
(1687) -  iphone
(1592) -  broadband
(1487) -  australia
(1115) -  business
(1088) -  nbn
(1075) -  digital
(1041) -  windows
(962) -  security