Vulnerabilities > CVE-2020-26147

047910
CVSS 3.2 - LOW
Attack vector
ADJACENT_NETWORK
Attack complexity
HIGH
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
NONE

Summary

An issue was discovered in the Linux kernel 5.8.9. The WEP, WPA, WPA2, and WPA3 implementations reassemble fragments even though some of them were sent in plaintext. This vulnerability can be abused to inject packets and/or exfiltrate selected fragments when another device sends fragmented frames and the WEP, CCMP, or GCMP data-confidentiality protocol is used.

Vulnerable Configurations

Part Description Count
OS
Linux
944
OS
Debian
1
OS
Arista
4
OS
Siemens
2
Hardware
Arista
4
Hardware
Siemens
2