ZeroHour

CVE-2020-24588

PoC
CVSS 3.1
3.5 low
EPSS
4%p89
Published
()
Modified
Description

The 802.11 standard that underpins Wi-Fi Protected Access (WPA, WPA2, and WPA3) and Wired Equivalent Privacy (WEP) doesn't require that the A-MSDU flag in the plaintext QoS header field is authenticated. Against devices that support receiving non-SSP A-MSDU frames (which is mandatory as part of 802.11n), an adversary can abuse this to inject arbitrary network packets.

Vendors
ieeelinuxmicrosoftdebiansiemensaristaciscointel
Products
ieee 802.11, mac80211, windows 10, windows 7, windows 8.1, windows rt 8.1, windows server 2008, windows server 2012, windows server 2016, windows server 2019, debian linux, scalance w1748-1 firmware
Weakness
CWE-327
Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N

In the news