Key management errors - CVE-2017-13079

 

Key management errors - CVE-2017-13079

Published: October 17, 2017 / Updated: October 17, 2017


Vulnerability identifier: #VU8839
CSH Severity: High
CVSS v4: 8.7 [CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2017-13079
CWE-ID: CWE-320
Exploitation vector: Adjecent network
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows an adjacent attacker to force a supplicant to reinstall a previously used integrity group key.

The weakness exists in the processing of the 802.11i 4-way handshake messages of the WPA and WPA2 protocols due to ambiguities in the processing of associated protocol messages. An adjacent attacker can use man-in-the-middle techniques to retransmit previously used message exchanges between supplicant and authenticator.

Affected software

Debian Linux
Gentoo Linux
Arch Linux
FortiOS
Fedora
ArubaOS (AOS)
HPE Helion Openstack
SUSE OpenStack Cloud Crowbar
SUSE OpenStack Cloud
FreeBSD
SUSE Linux
SUSE Linux Enterprise Server
SUSE Linux Enterprise Server for SAP
Junos OS
Slackware Linux
Ubuntu
Opensuse
Cisco DX70 Series IP Phones
Cisco DX80 Series IP Phones
Cisco IP Phone 8861
Cisco IP Phone 8865
Cisco Spark Room Series
Stratix 5100
Cisco ASA 5506W-X w
Cisco WAP121
Cisco WAP321
Cisco WAP371
Cisco WAP551
Cisco WAP561
Cisco Meraki
Cisco Wireless IP Phone 8821
Aironet
busybox (Alpine package)
hostapd (Alpine package)
wpa_supplicant (Alpine package)
wpa_supplicant
hostapd
wpa_supplicant-debugsource
wpa_supplicant-debuginfo
ESP-IDF

How to mitigate CVE-2017-13079


hostapd (Alpine package) - addressed in versions 2.6-r1, 2.6-r2
wpa_supplicant (Alpine package) - update to 2.6-r2
ESP-IDF - addressed in versions 4.3.5, 5.0.1
wpa_supplicant - addressed in versions 2.6-3.fc25.1, 2.6-11.fc26, 2.6-11.fc27
hostapd - addressed in versions 2.6-6.fc25, 2.6-6.fc26, 2.6-6.fc27, 2.6-7.el6, 2.6-7.el7
wpa_supplicant-debugsource - update to 2.9-15.22.1
wpa_supplicant-debuginfo - update to 2.9-15.22.1
wpa_supplicant - update to 2.9-15.22.1

External References

Related Security Bulletins