cbcvebase.
CVE-2017-13082
published 2017-10-17

CVE-2017-13082: Wi-Fi Protected Access (WPA and WPA2) that supports IEEE 802.11r allows reinstallation of the Pairwise Transient Key (PTK) Temporal Key (TK) during the fast…

PriorityP346high8.1CVSS 3.0
AVAACLPRNUINSUCHIHAN
EPSS
4.58%
90.6th percentile
Wi-Fi Protected Access (WPA and WPA2) that supports IEEE 802.11r allows reinstallation of the Pairwise Transient Key (PTK) Temporal Key (TK) during the fast BSS transmission (FT) handshake, allowing an attacker within radio range to replay, decrypt, or spoof frames.

Affected

92 ranges· showing 25
VendorProductVersion rangeFixed in
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
debiandebian_linux
debiandebian_linux
debianwpa< wpa 2:2.4-1.1 (bookworm)wpa 2:2.4-1.1 (bookworm)
freebsdfreebsd
freebsdfreebsd
freebsdfreebsd
freebsdfreebsd
googleandroid
opensuseleap
opensuseleap
redhatenterprise_linux_desktop
redhatenterprise_linux_server
suselinux_enterprise_desktop
suselinux_enterprise_point_of_sale
suselinux_enterprise_server
suselinux_enterprise_server
suseopenstack_cloud
w1.fihostapd
w1.fihostapd
w1.fihostapd
w1.fihostapd
w1.fihostapd

CVSS provenance

nvdv3.08.1HIGHCVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
nvdv2.05.8MEDIUMAV:A/AC:L/Au:N/C:P/I:P/A:P
osv8.1HIGH
vendor_debian8.1HIGH
vendor_redhat8.1HIGH
vendor_ubuntu7.5HIGH
vendor_cisco6.8MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.