Search CVE reports


Toggle filters

41 – 50 of 61 results


CVE-2017-13077

High priority
Fixed

Wi-Fi Protected Access (WPA and WPA2) allows reinstallation of the Pairwise Transient Key (PTK) Temporal Key (TK) during the four-way handshake, allowing an attacker within radio range to replay, decrypt, or spoof frames.

1 affected package

wpa

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
wpa — — — — —
Show less packages

CVE-2015-0210

Medium priority
Not affected

wpa_supplicant 2.0-16 does not properly check certificate subject name, which allows remote attackers to cause a man-in-the-middle attack.

2 affected packages

wpa, wpasupplicant

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
wpa — — — — —
wpasupplicant — — — — —
Show less packages

CVE-2016-4477

Low priority

Some fixes available 11 of 15

wpa_supplicant 0.4.0 through 2.5 does not reject \n and \r characters in passphrase parameters, which allows local users to trigger arbitrary library loading and consequently gain privileges, or cause a denial of service (daemon...

3 affected packages

hostapd, wpa, wpasupplicant

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
hostapd — — — Not in release Not in release
wpa — — — Fixed Fixed
wpasupplicant — — — Not in release Not in release
Show less packages

CVE-2016-4476

Low priority

Some fixes available 11 of 15

hostapd 0.6.7 through 2.5 and wpa_supplicant 0.6.7 through 2.5 do not reject \n and \r characters in passphrase parameters, which allows remote attackers to cause a denial of service (daemon outage) via a crafted WPS operation.

3 affected packages

hostapd, wpa, wpasupplicant

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
hostapd — — — Not in release Not in release
wpa — — — Fixed Fixed
wpasupplicant — — — Not in release Not in release
Show less packages

CVE-2015-5316

Medium priority
Fixed

The eap_pwd_perform_confirm_exchange function in eap_peer/eap_pwd.c in wpa_supplicant 2.x before 2.6, when EAP-pwd is enabled in a network configuration profile, allows remote attackers to cause a denial of service (NULL pointer...

2 affected packages

wpa, wpasupplicant

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
wpa — — — — —
wpasupplicant — — — — —
Show less packages

CVE-2015-5315

Medium priority
Fixed

The eap_pwd_process function in eap_peer/eap_pwd.c in wpa_supplicant 2.x before 2.6 does not validate that the reassembly buffer is large enough for the final fragment when EAP-pwd is enabled in a network configuration profile,...

2 affected packages

wpa, wpasupplicant

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
wpa — — — — —
wpasupplicant — — — — —
Show less packages

CVE-2015-5314

Medium priority
Fixed

The eap_pwd_process function in eap_server/eap_server_pwd.c in hostapd 2.x before 2.6 does not validate that the reassembly buffer is large enough for the final fragment when used with (1) an internal EAP server or (2) a RADIUS...

2 affected packages

hostapd, wpa

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
hostapd — — — — —
wpa — — — — —
Show less packages

CVE-2015-5310

Medium priority
Fixed

The WNM Sleep Mode code in wpa_supplicant 2.x before 2.6 does not properly ignore key data in response frames when management frame protection (MFP) was not negotiated, which allows remote attackers to inject arbitrary broadcast...

2 affected packages

wpa, wpasupplicant

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
wpa — — — — —
wpasupplicant — — — — —
Show less packages

CVE-2015-8041

Low priority

Some fixes available 1 of 2

Multiple integer overflows in the NDEF record parser in hostapd before 2.5 and wpa_supplicant before 2.5 allow remote attackers to cause a denial of service (process crash or infinite loop) via a large payload length field value...

3 affected packages

hostapd, wpa, wpasupplicant

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
hostapd — — — — —
wpa — — — — —
wpasupplicant — — — — —
Show less packages

CVE-2015-4146

Medium priority
Fixed

The EAP-pwd peer implementation in hostapd and wpa_supplicant 1.0 through 2.4 does not clear the L (Length) and M (More) flags before determining if a response should be fragmented, which allows remote attackers to cause a denial...

3 affected packages

hostapd, wpa, wpasupplicant

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
hostapd — — — — —
wpa — — — — —
wpasupplicant — — — — —
Show less packages