Back to search
CVE-2017-13084
Published: Oct 17, 2017
Modified: Aug 5, 2024
PUBLISHED
Description
Wi-Fi Protected Access (WPA and WPA2) allows reinstallation of the Station-To-Station-Link (STSL) Transient Key (STK) during the PeerKey handshake, allowing an attacker within radio range to replay, decrypt, or spoof frames.
| Vendor | Product | Versions |
|---|---|---|
Wi-Fi Alliance | Wi-Fi Protected Access (WPA and WPA2) | affected WPAaffected WPA2 |
Weaknesses (CWE)
References
1039581
vdb-entry
x_refsource_SECTRACK
101274
vdb-entry
x_refsource_BID
https://access.redhat.com/security/vulnerabilities/kracks
x_refsource_CONFIRM
20171016 Multiple Vulnerabilities in Wi-Fi Protected Access and Wi-Fi Protected Access II
vendor-advisory
x_refsource_CISCO
http://www.arubanetworks.com/assets/alert/ARUBA-PSA-2017-007.txt
x_refsource_CONFIRM
1039577
vdb-entry
x_refsource_SECTRACK
GLSA-201711-03
vendor-advisory
x_refsource_GENTOO
https://support.lenovo.com/us/en/product_security/LEN-17420
x_refsource_CONFIRM
https://www.krackattacks.com/
x_refsource_MISC
1039576
vdb-entry
x_refsource_SECTRACK
VU#228519
third-party-advisory
x_refsource_CERT-VN
https://cert-portal.siemens.com/productcert/pdf/ssa-901333.pdf
x_refsource_CONFIRM
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now