Blog | G5 Cyber Security

CVE-2020-24588

The 802.11 standard that underpins Wi-Fi Protected Access (WPA, WPA2, and WPA3) and Wired Equivalent Privacy (WEP) doesn’t require that the A-MSDU flag in the plaintext QoS header field is authenticated. An adversary can abuse this to inject arbitrary network packets. The vulnerability has been modified and is currently undergoing reanalysis. We are happy to provide an updated version of this article with the latest security update.”]

Source: https://nvd.nist.gov/vuln/detail/CVE-2020-24588

Exit mobile version