CVE-2019-16275
—CVSS 3.1
6.5 medium
EPSS
1%p67
Published
()
Modified
Description
hostapd before 2.10 and wpa_supplicant before 2.10 allow an incorrect indication of disconnection in certain situations because source address validation is mishandled. This is a denial of service that should have been prevented by PMF (aka management frame protection). The attacker must send a crafted 802.11 frame from a location that is within the 802.11 communications range.
In the news0 stories
No ingested article mentions this CVE yet.