← Back to CVE List

CVE-2018-14526

Published: 2018-08-08T19:29Z
Last Modified: 2024-11-21T03:49Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
An issue was discovered in rsn_supp/wpa.c in wpa_supplicant 2.0 through 2.6. Under certain conditions, the integrity of EAPOL-Key messages is not checked, leading to a decryption oracle. An attacker within range of the Access Point and client can abuse the vulnerability to recover sensitive information. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt