Required CVE Record Information
Description
Wi-Fi Protected Access (WPA and WPA2) allows reinstallation of the Pairwise Transient Key (PTK) Temporal Key (TK) during the four-way handshake, allowing an attacker within radio range to replay, decrypt, or spoof frames.
References 35 Total
- securitytracker.com: 1039581 vdb-entry
- https://support.apple.com/HT208221
- securityfocus.com: 101274 vdb-entry
- http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html
- debian.org: DSA-3999 vendor-advisory
- securitytracker.com: 1039578 vdb-entry
- https://access.redhat.com/security/vulnerabilities/kracks
- securitytracker.com: 1041432 vdb-entry
- https://source.android.com/security/bulletin/2018-04-01
- tools.cisco.com: 20171016 Multiple Vulnerabilities in Wi-Fi Protected Access and Wi-Fi Protected Access II vendor-advisory
- access.redhat.com: RHSA-2017:2911 vendor-advisory
- https://w1.fi/security/2017-1/wpa-packet-number-reuse-with-replayed-messages.txt
- http://www.arubanetworks.com/assets/alert/ARUBA-PSA-2017-007.txt
- securitytracker.com: 1039577 vdb-entry
- https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf03792en_us
- https://support.apple.com/HT208222
- https://source.android.com/security/bulletin/2017-11-01
- security.gentoo.org: GLSA-201711-03 vendor-advisory
- access.redhat.com: RHSA-2017:2907 vendor-advisory
- https://support.lenovo.com/us/en/product_security/LEN-17420
- security.freebsd.org: FreeBSD-SA-17:07 vendor-advisory
- https://www.krackattacks.com/
- http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html
- securitytracker.com: 1039573 vdb-entry
- securitytracker.com: 1039576 vdb-entry
- https://cert.vde.com/en-us/advisories/vde-2017-003
- securitytracker.com: 1039585 vdb-entry
- kb.cert.org: VU#228519 third-party-advisory
- https://support.apple.com/HT208220
- https://source.android.com/security/bulletin/2018-06-01
- https://support.apple.com/HT208219
- lists.debian.org: [debian-lts-announce] 20181113 [SECURITY] [DLA 1573-1] firmware-nonfree security update mailing-list
- https://cert-portal.siemens.com/productcert/pdf/ssa-901333.pdf
- https://cert.vde.com/en-us/advisories/vde-2017-005
- ubuntu.com: USN-3455-1 vendor-advisory
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 35 Total
- securitytracker.com: 1039581 vdb-entryx_transferred
- https://support.apple.com/HT208221 x_transferred
- securityfocus.com: 101274 vdb-entryx_transferred
- http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html x_transferred
- debian.org: DSA-3999 vendor-advisoryx_transferred
- securitytracker.com: 1039578 vdb-entryx_transferred
- https://access.redhat.com/security/vulnerabilities/kracks x_transferred
- securitytracker.com: 1041432 vdb-entryx_transferred
- https://source.android.com/security/bulletin/2018-04-01 x_transferred
- tools.cisco.com: 20171016 Multiple Vulnerabilities in Wi-Fi Protected Access and Wi-Fi Protected Access II vendor-advisoryx_transferred
- access.redhat.com: RHSA-2017:2911 vendor-advisoryx_transferred
- https://w1.fi/security/2017-1/wpa-packet-number-reuse-with-replayed-messages.txt x_transferred
- http://www.arubanetworks.com/assets/alert/ARUBA-PSA-2017-007.txt x_transferred
- securitytracker.com: 1039577 vdb-entryx_transferred
- https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf03792en_us x_transferred
- https://support.apple.com/HT208222 x_transferred
- https://source.android.com/security/bulletin/2017-11-01 x_transferred
- security.gentoo.org: GLSA-201711-03 vendor-advisoryx_transferred
- access.redhat.com: RHSA-2017:2907 vendor-advisoryx_transferred
- https://support.lenovo.com/us/en/product_security/LEN-17420 x_transferred
- security.freebsd.org: FreeBSD-SA-17:07 vendor-advisoryx_transferred
- https://www.krackattacks.com/ x_transferred
- http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html x_transferred
- securitytracker.com: 1039573 vdb-entryx_transferred
- securitytracker.com: 1039576 vdb-entryx_transferred
- https://cert.vde.com/en-us/advisories/vde-2017-003 x_transferred
- securitytracker.com: 1039585 vdb-entryx_transferred
- kb.cert.org: VU#228519 third-party-advisoryx_transferred
- https://support.apple.com/HT208220 x_transferred
- https://source.android.com/security/bulletin/2018-06-01 x_transferred
- https://support.apple.com/HT208219 x_transferred
- lists.debian.org: [debian-lts-announce] 20181113 [SECURITY] [DLA 1573-1] firmware-nonfree security update mailing-listx_transferred
- https://cert-portal.siemens.com/productcert/pdf/ssa-901333.pdf x_transferred
- https://cert.vde.com/en-us/advisories/vde-2017-005 x_transferred
- ubuntu.com: USN-3455-1 vendor-advisoryx_transferred