CVE-2015-8041

hostapd <2.5 & wpa_supplicant <2.5 - DoS

Title source: llm
STIX 2.1

Description

Multiple integer overflows in the NDEF record parser in hostapd before 2.5 and wpa_supplicant before 2.5 allow remote attackers to cause a denial of service (process crash or infinite loop) via a large payload length field value in an (1) WPS or (2) P2P NFC NDEF record, which triggers an out-of-bounds read.

References (8)

Core 8
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/75604
Mailing List mailing-list x_refsource_mlist
http://www.openwall.com/lists/oss-security/2015/11/02/5
Third Party Advisory vendor-advisory x_refsource_debian
http://www.debian.org/security/2015/dsa-3397
Various Sources x_refsource_confirm
https://w1.fi/cgit/hostap/plain/hostapd/ChangeLog
Mailing List vendor-advisory x_refsource_suse
http://lists.opensuse.org/opensuse-updates/2015-11/msg00037.html
Various Sources x_refsource_confirm
https://w1.fi/cgit/hostap/plain/wpa_supplicant/ChangeLog
Mailing List vendor-advisory x_refsource_suse
http://lists.opensuse.org/opensuse-updates/2015-11/msg00041.html

Scores

EPSS 0.0158
EPSS Percentile 81.8%

Details

CWE
CWE-189
Status published
Products (4)
opensuse/opensuse 13.1
opensuse/opensuse 13.2
w1.fi/hostapd < 2.4
w1.fi/wpa_supplicant < 2.4
Published Nov 09, 2015
Tracked Since Feb 18, 2026