- Issued:
- 2009-01-20
- Updated:
- 2009-01-20
RHBA-2009:0062 - Bug Fix Advisory
Synopsis
wpa_supplicant bug fix update
Type/Severity
Bug Fix Advisory
Red Hat Insights patch analysis
Identify and remediate systems affected by this advisory.
Topic
Updated wpa_supplicant packages that fix various bugs and support the
updated NetworkManager package are now available.
Description
wpa_supplicant provides support for WPA (WiFi Protected Access) and RSN
(Robust Secure Network), also called WPA2. wpa_supplicant implements
key negotiation with a WPA Authenticator and controls roaming as well as
the authentication and association of the wireless driver.
These updated packages rebase wpa_supplicant to the latest upstream stable
version and include backported fixes for a number of issues that may affect
users of wireless drivers that depend on the kernel's mac80211 wireless
stack. Specific fixes and enhancements include:
- Support for a D-Bus control interface has been added. D-Bus is a
popular lightweight Inter-Process Communication mechanism, and the addition
of this control interface to wpa_supplicant allows applications (like
NetworkManager) to more reliably control the supplicant.
- Cisco Aironet 340/350 wireless cards were not able to successfully
connect to 802.1x-enabled wireless networks, often used in security
sensitive organizations. During the connection process at the 4-Way WPA
handshake stage, sending encryption keys to the driver would clear the
wireless card firmware's authentication state. With this update, the
supplicant uses an alternate method of supplying encryption keys to the
kernel driver, allowing authentication state to be preserved in the Aironet
firmware and 802.1x connections to succeed.
- Kernel drivers utilizing the new mac80211 wireless stack were sometimes
unable to connect to wireless networks, either failing to find the
requested network, or prematurely ending communication with the wireless
access point during the connection process. Some drivers were prone to
reporting multiple disconnection events during the association process,
confusing the supplicant and causing long timeouts. The supplicant also
did not sufficiently instruct the driver to disconnect when switching
access points. This update fixes these issues and, in conjunction with
kernel driver updates, allow more wireless hardware to successfully connect
to wireless networks.
All wpa_supplicant users are advised to upgrade to this updated package,
which addresses these issues.
Solution
Before applying this update, make sure that all previously-released
errata relevant to your system have been applied.
This update is available via Red Hat Network. Details on how to use
the Red Hat Network to apply this update are available at
http://kbase.redhat.com/faq/FAQ_58_10188
Affected Products
- Red Hat Enterprise Linux Server 5 x86_64
- Red Hat Enterprise Linux Server 5 ia64
- Red Hat Enterprise Linux Server 5 i386
- Red Hat Enterprise Linux Workstation 5 x86_64
- Red Hat Enterprise Linux Workstation 5 i386
- Red Hat Enterprise Linux Desktop 5 x86_64
- Red Hat Enterprise Linux Desktop 5 i386
- Red Hat Enterprise Linux for Power, big endian 5 ppc
- Red Hat Enterprise Linux Server from RHUI 5 x86_64
- Red Hat Enterprise Linux Server from RHUI 5 i386
Fixes
- BZ - 449605 - Add IW_ENCODE_TEMP patch to help airo with 802.1x WiFi connections
- BZ - 468441 - wpa_supplicant mishandles Intel 3945, 4965, and 5000 disconnections during association
CVEs
(none)
References
(none)
Red Hat Enterprise Linux Server 5
SRPM | |
---|---|
wpa_supplicant-0.5.10-8.el5.src.rpm | SHA-256: caee693d0be7e4ad40e428847f52aa003fb9de77a2b7295c1ed81c04b6bf0a32 |
x86_64 | |
wpa_supplicant-0.5.10-8.el5.x86_64.rpm | SHA-256: 890fd026f95f7cf3d89182715dec11256e7c70ba30f744a0e4f391fa0e41ca49 |
wpa_supplicant-gui-0.5.10-8.el5.x86_64.rpm | SHA-256: fedf0e756c497b6ba2718a391b6014365f9fea537fe6f6d6febc9f96d977c555 |
ia64 | |
wpa_supplicant-0.5.10-8.el5.ia64.rpm | SHA-256: a97050341c78e35d738582a115f292252e6ccdbb7c3caf5d2d92634e64563347 |
wpa_supplicant-gui-0.5.10-8.el5.ia64.rpm | SHA-256: db958c5b2f876a5bd6e9081a8a5b409fa4b05957d3159812f2df6ba6a22a1425 |
i386 | |
wpa_supplicant-0.5.10-8.el5.i386.rpm | SHA-256: 7d2395d9efdb327db59a402374b445a6da40e094437c7bd1c03eab05bd530101 |
wpa_supplicant-gui-0.5.10-8.el5.i386.rpm | SHA-256: 1946e6db715006348966c9ab22e6ab35161ab21b48aa59b4d8c6d2c5d35afd40 |
Red Hat Enterprise Linux Workstation 5
SRPM | |
---|---|
wpa_supplicant-0.5.10-8.el5.src.rpm | SHA-256: caee693d0be7e4ad40e428847f52aa003fb9de77a2b7295c1ed81c04b6bf0a32 |
x86_64 | |
wpa_supplicant-0.5.10-8.el5.x86_64.rpm | SHA-256: 890fd026f95f7cf3d89182715dec11256e7c70ba30f744a0e4f391fa0e41ca49 |
wpa_supplicant-gui-0.5.10-8.el5.x86_64.rpm | SHA-256: fedf0e756c497b6ba2718a391b6014365f9fea537fe6f6d6febc9f96d977c555 |
i386 | |
wpa_supplicant-0.5.10-8.el5.i386.rpm | SHA-256: 7d2395d9efdb327db59a402374b445a6da40e094437c7bd1c03eab05bd530101 |
wpa_supplicant-gui-0.5.10-8.el5.i386.rpm | SHA-256: 1946e6db715006348966c9ab22e6ab35161ab21b48aa59b4d8c6d2c5d35afd40 |
Red Hat Enterprise Linux Desktop 5
SRPM | |
---|---|
wpa_supplicant-0.5.10-8.el5.src.rpm | SHA-256: caee693d0be7e4ad40e428847f52aa003fb9de77a2b7295c1ed81c04b6bf0a32 |
x86_64 | |
wpa_supplicant-0.5.10-8.el5.x86_64.rpm | SHA-256: 890fd026f95f7cf3d89182715dec11256e7c70ba30f744a0e4f391fa0e41ca49 |
wpa_supplicant-gui-0.5.10-8.el5.x86_64.rpm | SHA-256: fedf0e756c497b6ba2718a391b6014365f9fea537fe6f6d6febc9f96d977c555 |
i386 | |
wpa_supplicant-0.5.10-8.el5.i386.rpm | SHA-256: 7d2395d9efdb327db59a402374b445a6da40e094437c7bd1c03eab05bd530101 |
wpa_supplicant-gui-0.5.10-8.el5.i386.rpm | SHA-256: 1946e6db715006348966c9ab22e6ab35161ab21b48aa59b4d8c6d2c5d35afd40 |
Red Hat Enterprise Linux for Power, big endian 5
SRPM | |
---|---|
wpa_supplicant-0.5.10-8.el5.src.rpm | SHA-256: caee693d0be7e4ad40e428847f52aa003fb9de77a2b7295c1ed81c04b6bf0a32 |
ppc | |
wpa_supplicant-0.5.10-8.el5.ppc.rpm | SHA-256: 360e8d1284a0483680ed12d439ed595302d6cfae0eded9204b7d3b26c02db806 |
wpa_supplicant-gui-0.5.10-8.el5.ppc.rpm | SHA-256: 3dc49b7496bd2bea82f490e876934b2eee639f6135d28dfc029d59a3ec6fd170 |
Red Hat Enterprise Linux Server from RHUI 5
SRPM | |
---|---|
wpa_supplicant-0.5.10-8.el5.src.rpm | SHA-256: caee693d0be7e4ad40e428847f52aa003fb9de77a2b7295c1ed81c04b6bf0a32 |
x86_64 | |
wpa_supplicant-0.5.10-8.el5.x86_64.rpm | SHA-256: 890fd026f95f7cf3d89182715dec11256e7c70ba30f744a0e4f391fa0e41ca49 |
wpa_supplicant-gui-0.5.10-8.el5.x86_64.rpm | SHA-256: fedf0e756c497b6ba2718a391b6014365f9fea537fe6f6d6febc9f96d977c555 |
i386 | |
wpa_supplicant-0.5.10-8.el5.i386.rpm | SHA-256: 7d2395d9efdb327db59a402374b445a6da40e094437c7bd1c03eab05bd530101 |
wpa_supplicant-gui-0.5.10-8.el5.i386.rpm | SHA-256: 1946e6db715006348966c9ab22e6ab35161ab21b48aa59b4d8c6d2c5d35afd40 |
The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.