First published: Tue May 11 2021(Updated: )
An issue was discovered in the kernel in OpenBSD 6.6. The WEP, WPA, WPA2, and WPA3 implementations treat fragmented frames as full frames. An adversary can abuse this to inject arbitrary network packets, independent of the network configuration.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
OpenBSD | =6.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-26142 is an issue discovered in the kernel in OpenBSD 6.6 that affects the WEP, WPA, WPA2, and WPA3 implementations.
The severity of CVE-2020-26142 is medium with a CVSS score of 5.3.
CVE-2020-26142 in OpenBSD 6.6 allows an adversary to inject arbitrary network packets by treating fragmented frames as full frames.
An adversary can abuse CVE-2020-26142 to inject arbitrary network packets, independent of the network configuration.
Yes, patches and fixes for CVE-2020-26142 are available. Please refer to the OpenBSD security advisories for detailed instructions.