CVE-2020-26147: Medium severity Google Android vulnerability
A flaw was found in ieee80211rxhdefragment in net/mac80211/rx.c in the Linux Kernel's WiFi implementation. This vulnerability can be abused to inject packets or exfiltrate selected fragments when another device sends fragmented frames, and the WEP, CCMP, or GCMP data-confidentiality protocol is used. The highest threat from this vulnerability is to integrity.
Other sources
A vulnerability was found in Linux Kernel, where the wifi implementations reassemble fragments even though some of them were sent in plaintext. This vulnerability can be abused to inject packets and/or exfiltrate selected fragments when another device sends fragmented frames and the WEP, CCMP, or GCMP data-confidentiality protocol is used.
upstream patch: https://lore.kernel.org/linux-wireless/20210511180259.159598-1-johannes@sipsolutions.net/ https://lore.kernel.org/linux-wireless/20210511200110.30c4394bb835.I5acfdb552cc1d20c339c262315950b3eac491397@changeid/
— Red Hat
An issue was discovered in the Linux kernel 5.8.9. The WEP, WPA, WPA2, and WPA3 implementations reassemble fragments even though some of them were sent in plaintext. This vulnerability can be abused to inject packets and/or exfiltrate selected fragments when another device sends fragmented frames and the WEP, CCMP, or GCMP data-confidentiality protocol is used.
Affected Software
Remediation
Information
Patch Available
Event History
Parent advisories
This vulnerability appears in the following advisories.
Frequently Asked Questions
What is the severity of CVE-2020-26147?
CVE-2020-26147 is classified as a high-severity vulnerability due to the potential for packet injection and data exfiltration.
How do I fix CVE-2020-26147?
To remediate CVE-2020-26147, update your system to kernel version 0:4.18.0-348.rt7.130.el8 or kernel version 0:4.18.0-348.el8 or higher.
What systems are affected by CVE-2020-26147?
CVE-2020-26147 affects various versions of the Linux Kernel, including versions between 4.4 and 5.12.
Can CVE-2020-26147 be exploited remotely?
Yes, CVE-2020-26147 can be exploited remotely through the injection of handcrafted packets when fragmented frames are used.
What impact does CVE-2020-26147 have on device security?
CVE-2020-26147 can lead to serious security breaches by allowing attackers to intercept and manipulate fragmented wireless packets.