IM
IronMonkey Threat Research

CVE-2017-13081 MEDIUM

Published: 2017-10-17 | Last Modified: 2026-06-17 | Status: Modified

Description

Wi-Fi Protected Access (WPA and WPA2) that supports IEEE 802.11w allows reinstallation of the Integrity Group Temporal Key (IGTK) during the group key handshake, allowing an attacker within radio range to spoof frames from access points to clients.

Additional Descriptions (1)

Wi-Fi Protected Access (WPA y WPA2) que soporte IEEE 802.11w permite la reinstalación de la clave temporal IGTK (Integrity Group Temporal Key) durante el handshake de clave de grupo, haciendo que un atacante en el rango de radio suplante frames desde los puntos de acceso hasta los clientes.

CVSS Metrics

Base Score: 2.9 (LOW)

AV:A/AC:M/Au:N/C:N/I:P/A:N

Access VectorADJACENT_NETWORK
Access ComplexityMEDIUM
AuthenticationNONE
Confidentiality ImpactNONE
Integrity ImpactPARTIAL
Availability ImpactNONE

Source: [email protected]

Type: Primary

Exploitability Score: 5.5

Impact Score: 2.9

Weaknesses

Source Type Description
[email protected] Secondary
en CWE-323
[email protected] Primary
en CWE-330

Affected Products

Vendor Product Version Update Type
canonical ubuntu_linux 14.04 <built-in method update of dict object at 0x72a9b0919ec0> Operating System
canonical ubuntu_linux 16.04 <built-in method update of dict object at 0x72a99a7f2f80> Operating System
canonical ubuntu_linux 17.04 <built-in method update of dict object at 0x72a99a7f1940> Operating System
debian debian_linux 8.0 <built-in method update of dict object at 0x72a9b0b49c80> Operating System
debian debian_linux 9.0 <built-in method update of dict object at 0x72a9b0919a40> Operating System
freebsd freebsd * <built-in method update of dict object at 0x72a9b091bf80> Operating System
freebsd freebsd 10 <built-in method update of dict object at 0x72a99a7f0500> Operating System
freebsd freebsd 10.4 <built-in method update of dict object at 0x72a99a7f3d40> Operating System
freebsd freebsd 11 <built-in method update of dict object at 0x72a9b0b49000> Operating System
freebsd freebsd 11.1 <built-in method update of dict object at 0x72a9b091af40> Operating System
opensuse leap 42.2 <built-in method update of dict object at 0x72a99a7f06c0> Operating System
opensuse leap 42.3 <built-in method update of dict object at 0x72a99a7f3480> Operating System
redhat enterprise_linux_desktop 7 <built-in method update of dict object at 0x72a99a7f1c00> Operating System
redhat enterprise_linux_server 7 <built-in method update of dict object at 0x72a9cdf01d80> Operating System
w1.fi hostapd 0.2.4 <built-in method update of dict object at 0x72a9cdf03800> Application
w1.fi hostapd 0.2.5 <built-in method update of dict object at 0x72a99a7f2b80> Application
w1.fi hostapd 0.2.6 <built-in method update of dict object at 0x72a9b091b880> Application
w1.fi hostapd 0.2.8 <built-in method update of dict object at 0x72a99a7f1ec0> Application
w1.fi hostapd 0.3.7 <built-in method update of dict object at 0x72a99a7f1640> Application
w1.fi hostapd 0.3.9 <built-in method update of dict object at 0x72a9b0b48580> Application
w1.fi hostapd 0.3.10 <built-in method update of dict object at 0x72a9b0b4b300> Application
w1.fi hostapd 0.3.11 <built-in method update of dict object at 0x72a9b091b7c0> Application
w1.fi hostapd 0.4.7 <built-in method update of dict object at 0x72a9b091ab40> Application
w1.fi hostapd 0.4.8 <built-in method update of dict object at 0x72a99a7f3d80> Application
w1.fi hostapd 0.4.9 <built-in method update of dict object at 0x72a99a7f3f00> Application
w1.fi hostapd 0.4.10 <built-in method update of dict object at 0x72a9b0918700> Application
w1.fi hostapd 0.4.11 <built-in method update of dict object at 0x72a9b0b4a4c0> Application
w1.fi hostapd 0.5.7 <built-in method update of dict object at 0x72a9b0919fc0> Application
w1.fi hostapd 0.5.8 <built-in method update of dict object at 0x72a9b091a1c0> Application
w1.fi hostapd 0.5.9 <built-in method update of dict object at 0x72a99a7f2340> Application
w1.fi hostapd 0.5.10 <built-in method update of dict object at 0x72a99a7f3f80> Application
w1.fi hostapd 0.5.11 <built-in method update of dict object at 0x72a99a7f3800> Application
w1.fi hostapd 0.6.8 <built-in method update of dict object at 0x72a99a7f2900> Application
w1.fi hostapd 0.6.9 <built-in method update of dict object at 0x72a99a7f0680> Application
w1.fi hostapd 0.6.10 <built-in method update of dict object at 0x72a99a7f16c0> Application
w1.fi hostapd 0.7.3 <built-in method update of dict object at 0x72a99a7f19c0> Application
w1.fi hostapd 1.0 <built-in method update of dict object at 0x72a99a7f33c0> Application
w1.fi hostapd 1.1 <built-in method update of dict object at 0x72a99a7f31c0> Application
w1.fi hostapd 2.0 <built-in method update of dict object at 0x72a99a7f1c40> Application
w1.fi hostapd 2.1 <built-in method update of dict object at 0x72a99a7f18c0> Application
w1.fi hostapd 2.2 <built-in method update of dict object at 0x72a99a7f1d40> Application
w1.fi hostapd 2.3 <built-in method update of dict object at 0x72a99a7f0080> Application
w1.fi hostapd 2.4 <built-in method update of dict object at 0x72a99a7f0d40> Application
w1.fi hostapd 2.5 <built-in method update of dict object at 0x72a99a7f1c80> Application
w1.fi hostapd 2.6 <built-in method update of dict object at 0x72a99a7f2b00> Application
w1.fi wpa_supplicant 0.2.4 <built-in method update of dict object at 0x72a99a7f1bc0> Application
w1.fi wpa_supplicant 0.2.5 <built-in method update of dict object at 0x72a99a7f3040> Application
w1.fi wpa_supplicant 0.2.6 <built-in method update of dict object at 0x72a99a7f0b40> Application
w1.fi wpa_supplicant 0.2.7 <built-in method update of dict object at 0x72a99a7f1e80> Application
w1.fi wpa_supplicant 0.2.8 <built-in method update of dict object at 0x72a99a7f2980> Application
w1.fi wpa_supplicant 0.3.7 <built-in method update of dict object at 0x72a99a7f2880> Application
w1.fi wpa_supplicant 0.3.8 <built-in method update of dict object at 0x72a99a7f0140> Application
w1.fi wpa_supplicant 0.3.9 <built-in method update of dict object at 0x72a99a7f3300> Application
w1.fi wpa_supplicant 0.3.10 <built-in method update of dict object at 0x72a99a7f2380> Application
w1.fi wpa_supplicant 0.3.11 <built-in method update of dict object at 0x72a99a7f1b40> Application
w1.fi wpa_supplicant 0.4.7 <built-in method update of dict object at 0x72a9a3090640> Application
w1.fi wpa_supplicant 0.4.8 <built-in method update of dict object at 0x72a9cdf01d00> Application
w1.fi wpa_supplicant 0.4.9 <built-in method update of dict object at 0x72a9cdf03200> Application
w1.fi wpa_supplicant 0.4.10 <built-in method update of dict object at 0x72a9cdf03b00> Application
w1.fi wpa_supplicant 0.4.11 <built-in method update of dict object at 0x72a9a30920c0> Application
w1.fi wpa_supplicant 0.5.7 <built-in method update of dict object at 0x72a9cdf00c40> Application
w1.fi wpa_supplicant 0.5.8 <built-in method update of dict object at 0x72a9cdf01100> Application
w1.fi wpa_supplicant 0.5.9 <built-in method update of dict object at 0x72a9cdf03d80> Application
w1.fi wpa_supplicant 0.5.10 <built-in method update of dict object at 0x72a9cdf03c00> Application
w1.fi wpa_supplicant 0.5.11 <built-in method update of dict object at 0x72a9cdf00100> Application
w1.fi wpa_supplicant 0.6.8 <built-in method update of dict object at 0x72a9cdf03440> Application
w1.fi wpa_supplicant 0.6.9 <built-in method update of dict object at 0x72a99a642c80> Application
w1.fi wpa_supplicant 0.6.10 <built-in method update of dict object at 0x72a99a643d40> Application
w1.fi wpa_supplicant 0.7.3 <built-in method update of dict object at 0x72a9cdf014c0> Application
w1.fi wpa_supplicant 1.0 <built-in method update of dict object at 0x72a9cdf02f00> Application
w1.fi wpa_supplicant 1.1 <built-in method update of dict object at 0x72a9cdf03480> Application
w1.fi wpa_supplicant 2.0 <built-in method update of dict object at 0x72a9cdf01fc0> Application
w1.fi wpa_supplicant 2.1 <built-in method update of dict object at 0x72a9cdf005c0> Application
w1.fi wpa_supplicant 2.2 <built-in method update of dict object at 0x72a9cdf021c0> Application
w1.fi wpa_supplicant 2.3 <built-in method update of dict object at 0x72a9cdf01240> Application
w1.fi wpa_supplicant 2.4 <built-in method update of dict object at 0x72a9cc898a00> Application
w1.fi wpa_supplicant 2.5 <built-in method update of dict object at 0x72a9cc898640> Application
w1.fi wpa_supplicant 2.6 <built-in method update of dict object at 0x72a9cc89a880> Application
suse linux_enterprise_desktop 12 <built-in method update of dict object at 0x72a9cc89a680> Operating System
suse linux_enterprise_desktop 12 <built-in method update of dict object at 0x72a9cc898f80> Operating System
suse linux_enterprise_point_of_sale 11 <built-in method update of dict object at 0x72a9cc898e00> Operating System
suse linux_enterprise_server 11 <built-in method update of dict object at 0x72a9cc89ba80> Operating System
suse linux_enterprise_server 11 <built-in method update of dict object at 0x72a9cc89bfc0> Operating System
suse linux_enterprise_server 12 <built-in method update of dict object at 0x72a9cc89b480> Operating System
suse openstack_cloud 6 <built-in method update of dict object at 0x72a9cc899d80> Operating System

Affected Configurations

Operator: OR

Vulnerable CPE
Yes cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*
Yes cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*
Yes cpe:2.3:o:canonical:ubuntu_linux:17.04:*:*:*:*:*:*:*
Yes cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*
Yes cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*
Yes cpe:2.3:o:freebsd:freebsd:*:*:*:*:*:*:*:*
Yes cpe:2.3:o:freebsd:freebsd:10:*:*:*:*:*:*:*
Yes cpe:2.3:o:freebsd:freebsd:10.4:*:*:*:*:*:*:*
Yes cpe:2.3:o:freebsd:freebsd:11:*:*:*:*:*:*:*
Yes cpe:2.3:o:freebsd:freebsd:11.1:*:*:*:*:*:*:*
Yes cpe:2.3:o:opensuse:leap:42.2:*:*:*:*:*:*:*
Yes cpe:2.3:o:opensuse:leap:42.3:*:*:*:*:*:*:*
Yes cpe:2.3:o:redhat:enterprise_linux_desktop:7:*:*:*:*:*:*:*
Yes cpe:2.3:o:redhat:enterprise_linux_server:7:*:*:*:*:*:*:*

Operator: OR

Vulnerable CPE
Yes cpe:2.3:a:w1.fi:hostapd:0.2.4:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:hostapd:0.2.5:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:hostapd:0.2.6:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:hostapd:0.2.8:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:hostapd:0.3.7:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:hostapd:0.3.9:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:hostapd:0.3.10:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:hostapd:0.3.11:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:hostapd:0.4.7:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:hostapd:0.4.8:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:hostapd:0.4.9:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:hostapd:0.4.10:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:hostapd:0.4.11:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:hostapd:0.5.7:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:hostapd:0.5.8:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:hostapd:0.5.9:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:hostapd:0.5.10:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:hostapd:0.5.11:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:hostapd:0.6.8:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:hostapd:0.6.9:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:hostapd:0.6.10:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:hostapd:0.7.3:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:hostapd:1.0:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:hostapd:1.1:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:hostapd:2.0:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:hostapd:2.1:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:hostapd:2.2:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:hostapd:2.3:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:hostapd:2.4:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:hostapd:2.5:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:hostapd:2.6:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:wpa_supplicant:0.2.4:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:wpa_supplicant:0.2.5:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:wpa_supplicant:0.2.6:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:wpa_supplicant:0.2.7:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:wpa_supplicant:0.2.8:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:wpa_supplicant:0.3.7:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:wpa_supplicant:0.3.8:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:wpa_supplicant:0.3.9:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:wpa_supplicant:0.3.10:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:wpa_supplicant:0.3.11:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:wpa_supplicant:0.4.7:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:wpa_supplicant:0.4.8:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:wpa_supplicant:0.4.9:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:wpa_supplicant:0.4.10:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:wpa_supplicant:0.4.11:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:wpa_supplicant:0.5.7:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:wpa_supplicant:0.5.8:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:wpa_supplicant:0.5.9:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:wpa_supplicant:0.5.10:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:wpa_supplicant:0.5.11:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:wpa_supplicant:0.6.8:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:wpa_supplicant:0.6.9:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:wpa_supplicant:0.6.10:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:wpa_supplicant:0.7.3:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:wpa_supplicant:1.0:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:wpa_supplicant:1.1:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:wpa_supplicant:2.0:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:wpa_supplicant:2.1:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:wpa_supplicant:2.2:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:wpa_supplicant:2.3:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:wpa_supplicant:2.4:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:wpa_supplicant:2.5:*:*:*:*:*:*:*
Yes cpe:2.3:a:w1.fi:wpa_supplicant:2.6:*:*:*:*:*:*:*

Operator: OR

Vulnerable CPE
Yes cpe:2.3:o:suse:linux_enterprise_desktop:12:sp2:*:*:*:*:*:*
Yes cpe:2.3:o:suse:linux_enterprise_desktop:12:sp3:*:*:*:*:*:*
Yes cpe:2.3:o:suse:linux_enterprise_point_of_sale:11:sp3:*:*:*:*:*:*
Yes cpe:2.3:o:suse:linux_enterprise_server:11:sp3:*:*:*:ltss:*:*
Yes cpe:2.3:o:suse:linux_enterprise_server:11:sp4:*:*:*:*:*:*
Yes cpe:2.3:o:suse:linux_enterprise_server:12:*:*:*:ltss:*:*:*
Yes cpe:2.3:o:suse:openstack_cloud:6:*:*:*:*:*:*:*

References

Notification
Message here