The EAP-pwd implementation in hostapd (EAP server) before 2.8 and wpa_supplicant (EAP peer) before 2.8 does not validate fragmentation reassembly state properly for a case where an unexpected fragment could be received. This could result in process termination due to a NULL pointer dereference (denial of service). This affects eap_server/eap_server_pwd.c and eap_peer/eap_pwd.c.
CVSS Details
- CVSS 3.1 Base Score: 5.9
- CVSS 3.0 Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | alpine-linux-upgrade-hostapdalpine-linux-upgrade-wpa_supplicant | Jun 21, 2019 | Apr 26, 2019 | |
| Debian | debian-upgrade-wpa | May 27, 2019 | Apr 26, 2019 | |
| Gentoo Linux | gentoo-linux-upgrade-net-wireless-hostapdgentoo-linux-upgrade-net-wireless-wpa_supplicant | Aug 19, 2019 | Apr 26, 2019 | |
| Huawei Euleros 2_0_sp8 | huawei-euleros-2_0_sp8-upgrade-wpa_supplicant | Jan 3, 2020 | Apr 26, 2019 | |
| Suse | — | suse-upgrade-wpa_supplicantsuse-upgrade-wpa_supplicant-gui | Nov 20, 2020 | Apr 26, 2019 |
| Ubuntu | ubuntu-pro-upgrade-hostapdubuntu-pro-upgrade-wpasupplicantubuntu-upgrade-hostapdubuntu-upgrade-wpasupplicant | May 8, 2019 | Apr 26, 2019 | |
| Vmware Photon_os | vmware-photon_os_update_tdnf | Jan 20, 2025 | Apr 26, 2019 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub