From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from eggs.gnu.org ([2001:4830:134:3::10]:40696) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1e4YFa-0005Ib-TN for guix-patches@gnu.org; Tue, 17 Oct 2017 16:14:08 -0400 Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1e4YFW-0000an-U8 for guix-patches@gnu.org; Tue, 17 Oct 2017 16:14:06 -0400 Received: from debbugs.gnu.org ([208.118.235.43]:37992) by eggs.gnu.org with esmtps (TLS1.0:RSA_AES_128_CBC_SHA1:16) (Exim 4.71) (envelope-from ) id 1e4YFW-0000aW-Q9 for guix-patches@gnu.org; Tue, 17 Oct 2017 16:14:02 -0400 Received: from Debian-debbugs by debbugs.gnu.org with local (Exim 4.84_2) (envelope-from ) id 1e4YFW-000151-EB for guix-patches@gnu.org; Tue, 17 Oct 2017 16:14:02 -0400 Subject: [bug#28869] [PATCH] gnu: wpa-supplicant: Fix "KRACK" key reinstallation attacks [security fixes]. Resent-Message-ID: From: ludo@gnu.org (Ludovic =?UTF-8?Q?Court=C3=A8s?=) References: <09748a352729762dacb8e6171752aaa6d03df85d.1508178000.git.leo@famulari.name> <87lgka7pnz.fsf@fastmail.com> <20171016214910.GC20802@jasmine.lan> Date: Tue, 17 Oct 2017 22:13:27 +0200 In-Reply-To: <20171016214910.GC20802@jasmine.lan> (Leo Famulari's message of "Mon, 16 Oct 2017 17:49:10 -0400") Message-ID: <877evt1qjc.fsf@gnu.org> MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: quoted-printable List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Errors-To: guix-patches-bounces+kyle=kyleam.com@gnu.org Sender: "Guix-patches" To: 28869@debbugs.gnu.org Leo Famulari skribis: > On Mon, Oct 16, 2017 at 11:23:28PM +0200, Marius Bakke wrote: >> Leo Famulari writes: >>=20 >> > Fixes CVE-2017-{13078,13079,13080,13081,13082,13087,13088}. >> > >> > See these announcements for more information: >> > https://w1.fi/security/2017-1/wpa-packet-number-reuse-with-replayed-me= ssages.txt >> > https://www.krackattacks.com/ >> > >> > * gnu/packages/patches/wpa-supplicant-CVE-2017-13082.patch, >> > gnu/packages/patches/wpa-supplicant-fix-key-reuse.patch, >> > gnu/packages/patches/wpa-supplicant-fix-nonce-reuse.patch >> > gnu/packages/patches/wpa-supplicant-fix-zeroed-keys.patch, >> > gnu/packages/patches/wpa-supplicant-krack-followups.patch: New files. >> > * gnu/packages/admin.scm (wpa-supplicant-minimal)[source]: Use them. >> > * gnu/local.mk (dist_patch_DATA): Add them. >>=20 >> LGTM, thanks for taking care of this. > > Thanks for the review! Pushed as > 09748a352729762dacb8e6171752aaa6d03df85d Thanks a lot for the prompt fix as usual! Ludo=E2=80=99.