CVE-2014-3686 PUBLISHED

wpa_supplicant and hostapd 0.7.2 through 2.2, when running with certain configurations and using wpa_cli or hostapd_cli with action scripts, allows remote attackers to execute arbitrary commands via a crafted frame.

EPSS 4.67% · 89.2th percentile

Risk Scores

EPSS Score
4.67%
89.2th percentile

Affected Products

VendorProductVersions
Ubuntu:14.04:LTSwpa0, 1.0-3ubuntu2, 1.0-3ubuntu3

Timeline

References

Open in Interactive Console →