Linux kernel built with the ath9k_htc(CONFIG_ATH9K_HTC) wireless driver is vulnerable to an information leakage flaw. This driver does not properly update the MAC address when user changes it, thus leaking the same. This flaw could be
used to remotely determine the original MAC address of a machine.
A user/program could use this flaw to remotely discover the original MAC address of a machine.
Reference:
----------
-> http://www.openwall.com/lists/oss-security/2013/11/15/3
-> http://www.mathyvanhoef.com/2013/11/unmasking-spoofed-mac-address.html