Back to search
CVE-2017-13082
Published: Oct 17, 2017
Modified: Aug 5, 2024
PUBLISHED
Description
Wi-Fi Protected Access (WPA and WPA2) that supports IEEE 802.11r allows reinstallation of the Pairwise Transient Key (PTK) Temporal Key (TK) during the fast BSS transmission (FT) handshake, allowing an attacker within radio range to replay, decrypt, or spoof frames.
| Vendor | Product | Versions |
|---|---|---|
Wi-Fi Alliance | Wi-Fi Protected Access (WPA and WPA2) | affected WPAaffected WPA2 |
Weaknesses (CWE)
References
1039581
vdb-entry
x_refsource_SECTRACK
101274
vdb-entry
x_refsource_BID
https://rockwellautomation.custhelp.com/app/answers/detail/a_id/1066697
x_refsource_CONFIRM
http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html
x_refsource_CONFIRM
DSA-3999
vendor-advisory
x_refsource_DEBIAN
https://access.redhat.com/security/vulnerabilities/kracks
x_refsource_CONFIRM
20171016 Multiple Vulnerabilities in Wi-Fi Protected Access and Wi-Fi Protected Access II
vendor-advisory
x_refsource_CISCO
http://www.arubanetworks.com/assets/alert/ARUBA-PSA-2017-007.txt
x_refsource_CONFIRM
1039571
vdb-entry
x_refsource_SECTRACK
https://ics-cert.us-cert.gov/advisories/ICSA-17-299-02
x_refsource_MISC
https://source.android.com/security/bulletin/2017-11-01
x_refsource_CONFIRM
GLSA-201711-03
vendor-advisory
x_refsource_GENTOO
RHSA-2017:2907
vendor-advisory
x_refsource_REDHAT
1039570
vdb-entry
x_refsource_SECTRACK
https://support.lenovo.com/us/en/product_security/LEN-17420
x_refsource_CONFIRM
FreeBSD-SA-17:07
vendor-advisory
x_refsource_FREEBSD
https://www.krackattacks.com/
x_refsource_MISC
http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html
x_refsource_CONFIRM
1039573
vdb-entry
x_refsource_SECTRACK
VU#228519
third-party-advisory
x_refsource_CERT-VN
https://cert-portal.siemens.com/productcert/pdf/ssa-901333.pdf
x_refsource_CONFIRM
https://github.com/vanhoefm/krackattacks-test-ap-ft
x_refsource_MISC
https://cert.vde.com/en-us/advisories/vde-2017-005
x_refsource_CONFIRM
USN-3455-1
vendor-advisory
x_refsource_UBUNTU
openSUSE-SU-2020:0222
vendor-advisory
x_refsource_SUSE
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now