CVE-2017-13079: Medium severity android vulnerability
Wi-Fi Protected Access (WPA and WPA2) that supports IEEE 802.11w allows reinstallation of the Integrity Group Temporal Key (IGTK) during the four-way handshake, allowing an attacker within radio range to spoof frames from access points to clients.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-13079?
CVE-2017-13079 is classified as a high severity vulnerability due to its potential impact on network security.
How do I fix CVE-2017-13079?
To fix CVE-2017-13079, ensure that your devices are updated with the latest security patches provided by the software vendors.
Who is affected by CVE-2017-13079?
CVE-2017-13079 primarily affects devices using specific versions of Android, Ubuntu, Debian, FreeBSD, and `wpa_supplicant`.
What types of attacks can exploit CVE-2017-13079?
CVE-2017-13079 can be exploited to conduct frame spoofing attacks by an attacker within radio range.
Is CVE-2017-13079 related to any specific network protocols?
Yes, CVE-2017-13079 specifically affects the WPA and WPA2 protocols used for wireless network security.