CVE-2021-27803: High severity w1.fi Wpa Supplicant vulnerability
A vulnerability was discovered in how p2p/p2ppd.c in wpasupplicant before 2.10 processes P2P (Wi-Fi Direct) provision discovery requests. It could result in denial of service or other impact (potentially execution of arbitrary code), for an attacker within radio range.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2021-27803?
CVE-2021-27803 is a vulnerability in how p2p/p2p_pd.c in wpa_supplicant before version 2.10 processes P2P provision discovery requests.
What is the severity of CVE-2021-27803?
The severity of CVE-2021-27803 is high with a CVSS score of 7.5.
Who is affected by CVE-2021-27803?
Users of wpa_supplicant versions before 2.10, W1.fi Wpa Supplicant, Fedora 32, Fedora 33, Fedora 34, Debian Linux 9.0, and Debian Linux 10.0 are affected by CVE-2021-27803.
How can CVE-2021-27803 be exploited?
CVE-2021-27803 can be exploited by an attacker within radio range to cause denial of service or potentially execute arbitrary code.
How do I fix CVE-2021-27803?
To fix CVE-2021-27803, users should update to wpa_supplicant version 2.10 or later.