========================================================================== Ubuntu Security Notice USN-4757-2 March 04, 2021 wpa vulnerability ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 14.04 ESM Summary: wpa_supplicant could be made to crash or run programs if it received specially crafted network traffic. Software Description: - wpa: client support for WPA and WPA2 Details: USN-4757-1 fixed a vulnerability in wpa_supplicant and hostapd. This update provides the corresponding update for Ubuntu 14.04 ESM. Original advisory details: It was discovered that wpa_supplicant did not properly handle P2P (Wi-Fi Direct) provision discovery requests in some situations. A physically proximate attacker could use this to cause a denial of service or possibly execute arbitrary code. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 14.04 ESM: wpasupplicant 2.1-0ubuntu1.7+esm4 After a standard system update you need to reboot your computer to make all the necessary changes. References: https://ubuntu.com/security/notices/USN-4757-2 https://ubuntu.com/security/notices/USN-4757-1 CVE-2021-27803