Multiple heap-based buffer overflows in Aircrack-ng before 1.1 allow remote attackers to cause a denial of service (crash) and execute arbitrary code via a (1) large length value in an EAPOL packet or (2) long EAPOL packet.
No PoCs from references.
- https://github.com/mudongliang/LinuxFlaw
- https://github.com/oneoy/cve-