CVE-2013-4579 REJECTED

The ath9k_htc_set_bssid_mask function in drivers/net/wireless/ath/ath9k/htc_drv_main.c in the Linux kernel through 3.12 uses a BSSID masking approach to determine the set of MAC addresses on which a Wi-Fi device is listening, which allows remote attackers to discover the original MAC address after spoofing by sending a series of packets to MAC addresses with certain bit manipulations.

EPSS 15.30% · 94.6th percentile

Risk Scores

EPSS Score
15.30%
94.6th percentile

Affected Products

VendorProductVersions
Ubuntu:14.04:LTSlinux-lts-xenial0
Ubuntu:14.04:LTSlinux-lts-wily0
Ubuntu:16.04:LTSlinux-raspi20
Ubuntu:16.04:LTSlinux-gke0
Ubuntu:16.04:LTSlinux-aws0
Ubuntu:14.04:LTSlinux-lts-utopic0
Ubuntu:14.04:LTSlinux-lts-vivid0
Ubuntu:16.04:LTSlinux-hwe0
Ubuntu:16.04:LTSlinux0
Ubuntu:16.04:LTSlinux-snapdragon0
Ubuntu:14.04:LTSlinux3.12.0-7.15, 0, 3.11.0-12.19
Ubuntu:14.04:LTSlinux-aws0

Timeline

References

Open in Interactive Console →