VDB

CVE-2017-13088

CVE-2017-13088 PUBLISHED CVSS 5.300000190734863 MEDIUM

Wi-Fi Protected Access (WPA and WPA2) that support 802.11v allows reinstallation of the Integrity Group Temporal Key (IGTK) when processing a Wireless Network Management (WNM) Sleep Mode Response frame, allowing an attacker within radio range to replay frames from access points to clients.

EPSS 1.81% · 77.6th percentile

Risk Scores

CVSS 3.0
5.300000190734863
CVSS:3.0/AV:A/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N
EPSS Score
1.81%
77.6th percentile

Affected Products

VendorProductVersions
Ubuntu:14.04:LTSwpa2.1-0ubuntu1.1, 1.0-3ubuntu4, 2.1-0ubuntu1
Ubuntu:16.04:LTSwpa2.4-0ubuntu3, 2.4-0ubuntu4, 2.4-0ubuntu5

Timeline

  • CVE Published
  • Oct 16, 2017 PoC Published
  • Nov 3, 2017 PoC Published
  • Apr 14, 2021 EPSS Score
  • Jun 23, 2021 EPSS Score
  • Aug 25, 2021 EPSS Score
  • Dec 29, 2021 EPSS Score
  • Feb 4, 2022 EPSS Score
  • Mar 2, 2022 EPSS Score
  • May 4, 2022 EPSS Score
  • Jul 6, 2022 EPSS Score
  • Nov 10, 2022 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›