CVE-2017-13082: High severity android vulnerability
A new exploitation technique called key reinstallation attacks used to break Wi-Fi handshakes that negotiate session keys was discovered. These attacks target the Wi-Fi/WPA2 standard. An adversary can trick a vulnerable Access Point (AP) into reinstalling the pairwise key by retransmitted or replayed FT Reassociation Request. While reinstalling the already in-use key, the associated packet number (sometimes also called nonce) and receive replay counter is reset. This causes nonce reuse, voiding any security the underlying encryption protocol is supposed to provide. For example, it allows decryption or injection of frames, and enables an attacker to replay frames.
Other sources
Wi-Fi Protected Access (WPA and WPA2) that supports IEEE 802.11r allows reinstallation of the Pairwise Transient Key (PTK) Temporal Key (TK) during the fast BSS transmission (FT) handshake, allowing an attacker within radio range to replay, decrypt, or spoof frames.
— MITRE
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-13082?
CVE-2017-13082 has a high severity rating, given its potential for allowing unauthorized access and data manipulation.
How do I fix CVE-2017-13082?
To fix CVE-2017-13082, update affected software to the latest version where the vulnerability is patched.
Which software is affected by CVE-2017-13082?
CVE-2017-13082 affects multiple software products including Google Android, Ubuntu, Debian, FreeBSD, and several versions of Hostapd and WPA Supplicant.
Can CVE-2017-13082 be exploited remotely?
No, CVE-2017-13082 requires an attacker to be within radio range to exploit the vulnerability.
What is the impact of CVE-2017-13082 on wireless networks?
CVE-2017-13082 can lead to replay, decryption, or spoofing of frames in wireless networks, compromising data confidentiality and integrity.