MadWifi before 0.9.3 does not properly handle reception of an AUTH frame by an IBSS node, which allows remote attackers to cause a denial of service (system crash) via a certain AUTH frame.
- http://www.novell.com/linux/security/advisories/2007_14_sr.html
No PoCs found on GitHub currently.