Insufficient verification of data authenticity in IEEE 802.11 - CVE-2025-27558
Published: August 15, 2025
Vulnerability details
The vulnerability allows an attacker to perform spoofing attack.
The vulnerability exists due to insufficient verification of data authenticity in mesh networks using Wi-Fi Protected Access (WPA, WPA2, or WPA3) or Wired Equivalent Privacy (WEP). A remote attacker on the local network can inject arbitrary frames towards devices that support receiving non-SSP A-MSDU frames and perform spoofing attack.
Affected software
Debian Linux
Ubuntu
openEuler
Anolis OS
linux (Ubuntu package)
linux-aws-hwe (Ubuntu package)
linux-oracle (Ubuntu package)
linux-azure (Ubuntu package)
linux-kvm (Ubuntu package)
linux-oracle-5.4 (Ubuntu package)
linux-gcp-fips (Ubuntu package)
linux-azure-5.4 (Ubuntu package)
python3-perf-debuginfo
python3-perf
perf-debuginfo
perf
kernel-tools-devel
kernel-tools-debuginfo
kernel-tools
kernel-source
kernel-headers
kernel-devel
kernel-debugsource
kernel-debuginfo
bpftool-debuginfo
bpftool
kernel
linux-fips (Ubuntu package)
linux-lowlatency (Ubuntu package)
linux-azure-5.15 (Ubuntu package)
linux-nvidia-tegra-igx (Ubuntu package)
linux-aws-5.15 (Ubuntu package)
linux-azure-fde-5.15 (Ubuntu package)
linux (Debian package)
kernel-64k-devel
kernel-64k-debug-devel
kernel-64k-debug
kernel-64k
kernel-tools-libs-devel
kernel-tools-libs
kernel-debug-devel
kernel-debug
How to mitigate CVE-2025-27558
linux-aws-hwe (Ubuntu package) - addressed in versions 4.15.0-254.266~16.04.1, 4.15.0-1188.205~16.04.1, 4.15.0-1195.208~16.04.1, 4.15.0-1205.220~16.04.1
linux-oracle (Ubuntu package) - addressed in versions 4.15.0.1158.163, 4.15.0-1158.169, 4.15.0-1158.169~16.04.1, 5.15.0.1110.106, 5.15.0-1110.116
linux-azure (Ubuntu package) - update to 4.15.0-1205.220~14.04.1
linux-kvm (Ubuntu package) - addressed in versions 5.4.0.1149.145, 5.4.0-1149.158
linux-oracle-5.4 (Ubuntu package) - update to 5.4.0-1161.171~18.04.1
linux-gcp-fips (Ubuntu package) - addressed in versions 5.4.0.1165.107, 5.4.0-1165.174+fips1
linux-azure-5.4 (Ubuntu package) - addressed in versions 5.4.0.1167.103, 5.4.0-1167.173+fips1, 5.4.0-1167.173~18.04.1
python3-perf-debuginfo - addressed in versions 5.10.0-312.0.0.215, 5.10.0-317.0.0.220, 6.6.0-145.0.7.134, 6.6.0-145.0.7.146
python3-perf - addressed in versions 5.10.0-312.0.0.215, 5.10.0-317.0.0.220, 6.6.0-145.0.7.134, 6.6.0-145.0.7.146
perf-debuginfo - addressed in versions 5.10.0-312.0.0.215, 5.10.0-317.0.0.220, 6.6.0-145.0.7.134, 6.6.0-145.0.7.146
perf - addressed in versions 5.10.0-312.0.0.215, 5.10.0-317.0.0.220, 6.6.0-145.0.7.134, 6.6.0-145.0.7.146
kernel-tools-devel - addressed in versions 5.10.0-312.0.0.215, 5.10.0-317.0.0.220, 6.6.0-145.0.7.134, 6.6.0-145.0.7.146
kernel-tools-debuginfo - addressed in versions 5.10.0-312.0.0.215, 5.10.0-317.0.0.220, 6.6.0-145.0.7.134, 6.6.0-145.0.7.146
kernel-tools - addressed in versions 5.10.0-312.0.0.215, 5.10.0-317.0.0.220, 6.6.0-145.0.7.134, 6.6.0-145.0.7.146
kernel-source - addressed in versions 5.10.0-312.0.0.215, 5.10.0-317.0.0.220, 6.6.0-145.0.7.134, 6.6.0-145.0.7.146
kernel-headers - addressed in versions 5.10.0-312.0.0.215, 5.10.0-317.0.0.220, 6.6.0-145.0.7.134, 6.6.0-145.0.7.146
kernel-devel - addressed in versions 5.10.0-312.0.0.215, 5.10.0-317.0.0.220, 6.6.0-145.0.7.134, 6.6.0-145.0.7.146
kernel-debugsource - addressed in versions 5.10.0-312.0.0.215, 5.10.0-317.0.0.220, 6.6.0-145.0.7.134, 6.6.0-145.0.7.146
kernel-debuginfo - addressed in versions 5.10.0-312.0.0.215, 5.10.0-317.0.0.220, 6.6.0-145.0.7.134, 6.6.0-145.0.7.146
bpftool-debuginfo - addressed in versions 5.10.0-312.0.0.215, 5.10.0-317.0.0.220, 6.6.0-145.0.7.134, 6.6.0-145.0.7.146
bpftool - addressed in versions 5.10.0-312.0.0.215, 5.10.0-317.0.0.220, 6.6.0-145.0.7.134, 6.6.0-145.0.7.146
kernel - addressed in versions 5.10.0-312.0.0.215, 5.10.0-317.0.0.220, 6.6.0-145.0.7.134, 6.6.0-145.0.7.146
linux-fips (Ubuntu package) - addressed in versions 5.15.0.190.111, 5.15.0-190.200+fips1, 5.15.0.1110.109, 5.15.0-1110.116
linux-lowlatency (Ubuntu package) - addressed in versions 5.15.0.190.157, 5.15.0-190.200
linux-azure-5.15 (Ubuntu package) - addressed in versions 5.15.0-190.200~20.04.1, 5.15.0.1114.104, 5.15.0.1114.111, 5.15.0-1114.124, 5.15.0-1114.124+fips1, 5.15.0-1119.128~20.04.1
linux-nvidia-tegra-igx (Ubuntu package) - addressed in versions 5.15.0-1054.54, 5.15.0.1054.56
linux-aws-5.15 (Ubuntu package) - addressed in versions 5.15.0-1114.121~20.04.1, 5.15.0-1114.124~20.04.1
linux-azure-fde-5.15 (Ubuntu package) - update to 5.15.0-1118.127~20.04.1
linux (Debian package) - addressed in versions 6.1.147-1, 6.12.41-1
kernel-tools - update to 6.6.102-5
kernel-64k-devel - update to 6.6.102-5
kernel-64k-debug-devel - update to 6.6.102-5
kernel-64k-debug - update to 6.6.102-5
kernel-64k - update to 6.6.102-5
python3-perf - update to 6.6.102-5
perf - update to 6.6.102-5
kernel-tools-libs-devel - update to 6.6.102-5
kernel-tools-libs - update to 6.6.102-5
kernel - update to 6.6.102-5
kernel-headers - update to 6.6.102-5
kernel-devel - update to 6.6.102-5
kernel-debug-devel - update to 6.6.102-5
kernel-debug - update to 6.6.102-5
bpftool - update to 6.6.102-5
External References
Related Security Bulletins
- Spoofing attack in IEEE 802.11 implementation
- Debian update for linux
- Debian update for linux
- Anolis OS update for kernel:6.6
- openEuler 24.03 LTS update for kernel
- openEuler 22.03 LTS SP4 update for kernel
- openEuler 24.03 LTS SP1 update for kernel
- openEuler 22.03 LTS SP4 update for kernel
- Ubuntu update for linux-azure
- Ubuntu update for linux
- Ubuntu update for linux
- Ubuntu update for linux-oracle
- Ubuntu update for linux-nvidia-tegra-igx
- Ubuntu update for linux-aws-hwe
- Ubuntu update for linux-azure-fde-5.15
- Ubuntu update for linux-oracle
- Ubuntu update for linux-azure-5.15
- Ubuntu update for linux
- Ubuntu update for linux-kvm
- Ubuntu update for linux-lowlatency
- Ubuntu update for linux-azure-5.4
- Ubuntu update for linux-gcp-fips
- Ubuntu update for linux-fips
- Ubuntu update for linux-aws-5.15
- Ubuntu update for linux-oracle-5.4