cbcvebase.
CVE-2017-13088
published 2017-10-17

CVE-2017-13088: Wi-Fi Protected Access (WPA and WPA2) that support 802.11v allows reinstallation of the Integrity Group Temporal Key (IGTK) when processing a Wireless Network…

medium5.3CVSS 3.0
AVAACHPRNUINSUCNIHAN
Wi-Fi Protected Access (WPA and WPA2) that support 802.11v allows reinstallation of the Integrity Group Temporal Key (IGTK) when processing a Wireless Network Management (WNM) Sleep Mode Response frame, allowing an attacker within radio range to replay frames from access points to clients.

Affected

92 ranges· showing 25
VendorProductVersion rangeFixed in
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
debiandebian_linux
debiandebian_linux
debianwpa< wpa 2:2.4-1.1 (bookworm)wpa 2:2.4-1.1 (bookworm)
freebsdfreebsd
freebsdfreebsd
freebsdfreebsd
freebsdfreebsd
googleandroid
opensuseleap
opensuseleap
redhatenterprise_linux_desktop
redhatenterprise_linux_server
suselinux_enterprise_desktop
suselinux_enterprise_point_of_sale
suselinux_enterprise_server
suselinux_enterprise_server
suseopenstack_cloud
w1.fihostapd
w1.fihostapd
w1.fihostapd
w1.fihostapd
w1.fihostapd

CVSS provenance

nvdv3.05.3MEDIUMCVSS:3.0/AV:A/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N
osv7.5HIGH