CVE-2020-24587

LOWCVSS 2.6/10EPSS 2.59%

Last modified

CVE-2020-24587 is a low-severity vulnerability rated 2.6/10 on the CVSS scale. The 802.11 standard that underpins Wi-Fi Protected Access (WPA, WPA2, and WPA3) and Wired Equivalent Privacy (WEP) doesn't require that all fragments of a frame are encrypted under the same key. An adversary can abuse this to decrypt selected fragments when another device sends fragmented frames and the WEP, CCMP, or GCMP encryption key is periodically renewed.. EPSS estimates a 2.59% chance of exploitation in the next 30 days.

Description

The 802.11 standard that underpins Wi-Fi Protected Access (WPA, WPA2, and WPA3) and Wired Equivalent Privacy (WEP) doesn't require that all fragments of a frame are encrypted under the same key. An adversary can abuse this to decrypt selected fragments when another device sends fragmented frames and the WEP, CCMP, or GCMP encryption key is periodically renewed.

Metrics

CVSS 3.1
2.6/10

CVSS:3.1/AV:A/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N

EPSS Probability
2.59%

83.3th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
IeeeIeee 802.11All versions
LinuxMac80211All versions
DebianDebian Linux9.0
AristaC-100 FirmwareAll versions
AristaC-110 FirmwareAll versions
AristaC-120 FirmwareAll versions
AristaC-130 FirmwareAll versions
AristaC-200 FirmwareAll versions
AristaC-230 FirmwareAll versions
AristaC-235 FirmwareAll versions
AristaC-250 FirmwareAll versions
AristaC-260 FirmwareAll versions
AristaC-65 FirmwareAll versions
AristaC-75 FirmwareAll versions
AristaO-105 FirmwareAll versions
AristaO-90 FirmwareAll versions
AristaW-118 FirmwareAll versions
AristaW-68 FirmwareAll versions
Cisco1100 FirmwareAll versions
Cisco1100-4p FirmwareAll versions
Cisco1100-8p FirmwareAll versions
Cisco1101-4p FirmwareAll versions
Cisco1109-2p FirmwareAll versions
Cisco1109-4p FirmwareAll versions
CiscoAironet 1532 FirmwareAll versions
CiscoAironet 1542d FirmwareAll versions
CiscoAironet 1542i FirmwareAll versions
CiscoAironet 1552 FirmwareAll versions
CiscoAironet 1552h FirmwareAll versions
CiscoAironet 1572 FirmwareAll versions
CiscoAironet 1702 FirmwareAll versions
CiscoAironet 1800 FirmwareAll versions
CiscoAironet 1800i FirmwareAll versions
CiscoAironet 1810 FirmwareAll versions
CiscoAironet 1810w FirmwareAll versions
CiscoAironet 1815 FirmwareAll versions
CiscoAironet 1815i FirmwareAll versions
CiscoAironet 1832 FirmwareAll versions
CiscoAironet 1842 FirmwareAll versions
CiscoAironet 1852 FirmwareAll versions
CiscoAironet 2702 FirmwareAll versions
CiscoAironet 2800 FirmwareAll versions
CiscoAironet 2800e FirmwareAll versions
CiscoAironet 2800i FirmwareAll versions
CiscoAironet 3702 FirmwareAll versions
CiscoAironet 3800 FirmwareAll versions
CiscoAironet 3800e FirmwareAll versions
CiscoAironet 3800i FirmwareAll versions
CiscoAironet 3800p FirmwareAll versions
CiscoAironet 4800 FirmwareAll versions

Showing 50 of 174 affected configurations. See NVD for the full list.

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2020-24587?
The 802.11 standard that underpins Wi-Fi Protected Access (WPA, WPA2, and WPA3) and Wired Equivalent Privacy (WEP) doesn't require that all fragments of a frame are encrypted under the same key. An adversary can abuse this to decrypt selected fragments when another device sends fragmented frames and the WEP, CCMP, or GCMP encryption key is periodically renewed.
How severe is CVE-2020-24587?
CVE-2020-24587 has a CVSS score of 2.6/10 (LOW severity). The EPSS model estimates a 2.59% probability of exploitation in the next 30 days.
How do I fix CVE-2020-24587?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2020-24587?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST