ZeroHour

CVE-2020-26142

CVSS 3.1
5.3 medium
EPSS
2%p80
Published
()
Modified
Description

An issue was discovered in the kernel in OpenBSD 6.6. The WEP, WPA, WPA2, and WPA3 implementations treat fragmented frames as full frames. An adversary can abuse this to inject arbitrary network packets, independent of the network configuration.

Vendors
openbsd
Products
openbsd
Weakness
CWE-74
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N

In the news