You are here
Home > Preporuke > Sigurnosni propust programskog paketa wpa_supplicant

Sigurnosni propust programskog paketa wpa_supplicant

  • Detalji os-a: FED
  • Važnost: IMP
  • Operativni sustavi: L
  • Kategorije: LFE

Fedora Update Notification
2014-10-27 02:20:51

Name : wpa_supplicant
Product : Fedora 20
Version : 2.0
Release : 12.fc20
Summary : WPA/WPA2/IEEE 802.1X Supplicant
Description :
wpa_supplicant is a WPA Supplicant for Linux, BSD and Windows with support
for WPA and WPA2 (IEEE 802.11i / RSN). Supplicant is the IEEE 802.1X/WPA
component that is used in the client stations. It implements key negotiation
with a WPA Authenticator and it controls the roaming and IEEE 802.11
authentication/association of the wlan driver.

Update Information:

This update fixes a possible security issue executing scripts with wpa_cli.

* Wed Oct 22 2014 Dan Williams <> – 1:2.0-12
– Use os_exec() for action script execution (CVE-2014-3686)
* Thu Aug 21 2014 Kevin Fenzi <> – 1:2.0-11
– Rebuild for rpm bug 1131960
* Mon Aug 18 2014 Fedora Release Engineering <> – 1:2.0-10
– Rebuilt for
* Sun Jun 8 2014 Fedora Release Engineering <> – 1:2.0-9
– Rebuilt for

[ 1 ] Bug #1151259 – CVE-2014-3686 wpa_supplicant and hostapd: wpa_cli and hostapd_cli remote command execution issue

This update can be installed with the “yum” update program. Use
su -c ‘yum update wpa_supplicant’ at the command line.
For more information, refer to “Managing Software with yum”,
available at

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
package-announce mailing list

AutorTomislav Protega
Cert idNCERT-REF-2014-10-0019-ADV
ID izvornikaFEDORA-2014-13555
More in Preporuke
Ranjivost programskog paketa file

Otkrivena je ranjivost čitanja podataka izvan granice dodijeljene memorije u funkciji file's donote() kod alata file. Ranjivost se očitovala načinom...