First published: Wed Aug 12 2020(Updated: )
eapol.c in iNet wireless daemon (IWD) through 1.8 allows attackers to trigger a PTK reinstallation by retransmitting EAPOL Msg4/4.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Intel iNet Wireless Daemon | <=1.8 |
https://lists.01.org/hyperkitty/list/iwd@lists.01.org/thread/4GUXL4Z6KZWWZINATGHNJVAEUTS3I7PG/
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-17497 is classified as a medium severity vulnerability.
To fix CVE-2020-17497, upgrade the Intel iNet Wireless Daemon to version 1.9 or later.
CVE-2020-17497 allows attackers to trigger a PTK reinstallation attack by retransmitting EAPOL Msg4/4.
CVE-2020-17497 affects versions of iNet Wireless Daemon up to and including 1.8.
You can determine if your system is vulnerable to CVE-2020-17497 by checking if it is running Intel iNet Wireless Daemon version 1.8 or older.