/// File Name: |
dlink_wifi_rates.rb.txt |
Description:
|
This Metasploit module exploits a stack overflow in the A5AGU.SYS driver provided with the D-Link DWL-G132 USB wireless adapter. This stack overflow allows remote code execution in kernel mode. The stack overflow is triggered when a 802.11 Beacon frame is received that contains a long Rates information element. This exploit was tested with version 1.0.1.41 of the A5AGU.SYS driver and a D-Link DWL-G132 USB adapter (HW: A2, FW: 1.02). Newer versions of the A5AGU.SYS driver are provided with the D-Link WUA-2340 adapter and appear to resolve this flaw, but D-Link does not offer an updated driver for the DWL-G132. Since this vulnerability is exploited via beacon frames, all cards within range of the attack will be affected. The tested adapter used a MAC address in the range of 00:11:95:f2:XX:XX.
| Author: | H D Moore, Matt Miller, Johnny Cache, LMH | Homepage: | http://projects.info-pull.com/mokb/ | File Size: | 5873 | Last Modified: | Nov 14 08:56:53 2006 |
MD5 Checksum: | a403e8304d2632dbf796bf0e140b69a9 |
|