wpasupplicant and hostapd 0.7.2 through 2.2, when running with certain configurations and using wpacli or hostapd_cli with action scripts, allows remote attackers to execute arbitrary commands via a crafted frame.
{ "urgency": "high" }
"https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2014-3686.json"