CVE-2020-26146 PUBLISHED

An issue was discovered on Samsung Galaxy S3 i9305 4.4.4 devices. The WPA, WPA2, and WPA3 implementations reassemble fragments with non-consecutive packet numbers. An adversary can abuse this to exfiltrate selected fragments. This vulnerability is exploitable when another device sends fragmented frames and the WEP, CCMP, or GCMP data-confidentiality protocol is used. Note that WEP is vulnerable to this attack by design.

EPSS 0.80% · 74.0th percentile

Risk Scores

EPSS Score
0.80%
74.0th percentile

Affected Products

VendorProductVersions
Ubuntu:20.04:LTSlinux-hwe-5.11*, 5.11.0-40.44~20.04.2, 5.11.0-41.45~20.04.1
Ubuntu:20.04:LTSlinux-oracle-5.85.8.0-1037.38~20.04.1, 5.8.0-1034.35~20.04.2, 5.8.0-1033.34~20.04.1
Ubuntu:24.04:LTSlinux-gkeop6.8.0-1012.14, 6.8.0-1029.32, 6.8.0-1023.25
Ubuntu:22.04:LTSlinux-gcp-6.5*, 0, 6.5.0-1017.17~22.04.1
Ubuntu:Pro:FIPS:18.04:LTSlinux-gcp-fips4.15.0-1001.1, 0
Ubuntu:22.04:LTSlinux-lowlatency-hwe-6.5*, *, *
Ubuntu:Pro:18.04:LTSlinux4.15.0-240.252, 4.15.0-243.255, 4.15.0-245.257
Ubuntu:20.04:LTSlinux-oem-5.65.6.0-1056.60, 5.6.0-1007.7, 5.6.0-1053.57
Ubuntu:Pro:FIPS-updates:18.04:LTSlinux-gcp-fips4.15.0-2025.27, 4.15.0-2061.66, 4.15.0-2060.65
Ubuntu:Pro:FIPS-updates:22.04:LTSlinux-fips5.15.0-152.162+fips1, 5.15.0-144.157+fips1, *
Ubuntu:20.04:LTSlinux-gkeop-5.155.15.0-1026.31~20.04.1, 5.15.0-1044.51~20.04.1, 5.15.0-1040.46~20.04.1
Ubuntu:22.04:LTSlinux-nvidia-6.56.5.0-1004.4, 6.5.0-1024.25, 6.5.0-1023.24
Ubuntu:Pro:FIPS-updates:22.04:LTSlinux-aws-fips*, 5.15.0-1066.72+fips1, 5.15.0-1067.73+fips1
Ubuntu:Pro:20.04:LTSlinux-hwe-5.15*, 0, 5.15.0-43.46~20.04.1
Ubuntu:24.04:LTSlinux-aws6.5.0-1008.8, 6.8.0-1032.34, 6.8.0-1033.35
Ubuntu:20.04:LTSlinux-riscv-5.8*, 5.8.0-29.31~20.04.1, 5.8.0-26.28~20.04.1
Ubuntu:20.04:LTSlinux-azure-5.80, 5.8.0-1033.35~20.04.1, 5.8.0-1036.38~20.04.1
Ubuntu:Pro:FIPS-updates:20.04:LTSlinux-aws-fips5.4.0-1139.149+fips1, 5.4.0-1080.87+fips1, 5.4.0-1081.88+fips1
Ubuntu:Pro:18.04:LTSlinux-hwe-5.45.4.0-107.121~18.04.1, 5.4.0-104.118~18.04.1, 5.4.0-100.113~18.04.1
Ubuntu:18.04:LTSlinux-gcp-5.30, 5.3.0-1009.10~18.04.1, 5.3.0-1014.15~18.04.1

…and 219 more

Timeline

References

Open in Interactive Console →