CVE-2020-24586

CVSS v3.1 3.5 (Low)
35% Progress
CVSS v2.0 2.9 (Low)
29% Progress
EPSS 0.17 % (55th)
0.17% Progress
Affected Products 44
Advisories 36

The 802.11 standard that underpins Wi-Fi Protected Access (WPA, WPA2, and WPA3) and Wired Equivalent Privacy (WEP) doesn't require that received fragments be cleared from memory after (re)connecting to a network. Under the right circumstances, when another device sends fragmented frames encrypted using WEP, CCMP, or GCMP, this can be abused to inject arbitrary network packets and/or exfiltrate user data.

Weaknesses
CWE-NVD-Other
CVE Status
PUBLISHED
CNA
MITRE
Published Date
2021-05-11 20:15:08
(3 years ago)
Updated Date
2023-04-01 22:15:07
(17 months ago)

Affected Products

Loading...
Loading...

Configuration #1

AND
    CPE23 From Up To
OR  
  Ieee 802.11 cpe:2.3:a:ieee:ieee_802.11

Configuration #2

AND
    CPE23 From Up To
OR  
  Debian Linux 9.0 cpe:2.3:o:debian:debian_linux:9.0

Configuration #3

AND
    CPE23 From Up To
OR  
  Linux Mac80211 cpe:2.3:a:linux:mac80211:-

Configuration #4

AND
    CPE23 From Up To
OR  
  Arista C-250 Firmware prior 10.0.1-31 version cpe:2.3:o:arista:c-250_firmware < 10.0.1-31
OR  
  Running on/with
  Arista C-250 cpe:2.3:h:arista:c-250:-

Configuration #5

AND
    CPE23 From Up To
OR  
  Arista C-260 Firmware prior 10.0.1-31 version cpe:2.3:o:arista:c-260_firmware < 10.0.1-31
OR  
  Running on/with
  Arista C-260 cpe:2.3:h:arista:c-260:-

Configuration #6

AND
    CPE23 From Up To
OR  
  Arista C-230 Firmware prior 10.0.1-31 version cpe:2.3:o:arista:c-230_firmware < 10.0.1-31
OR  
  Running on/with
  Arista C-230 cpe:2.3:h:arista:c-230:-

Configuration #7

AND
    CPE23 From Up To
OR  
  Arista C-235 Firmware prior 10.0.1-31 version cpe:2.3:o:arista:c-235_firmware < 10.0.1-31
OR  
  Running on/with
  Arista C-235 cpe:2.3:h:arista:c-235:-

Configuration #8

AND
    CPE23 From Up To
OR  
  Arista C-200 Firmware prior 11.0.0-36 version cpe:2.3:o:arista:c-200_firmware < 11.0.0-36
OR  
  Running on/with
  Arista C-200 cpe:2.3:h:arista:c-200:-

Configuration #9

AND
    CPE23 From Up To
OR  
  Intel Ax210 Firmware prior 22.30.0.11 version cpe:2.3:o:intel:ax210_firmware < 22.30.0.11
OR  
  Running on/with
  Intel Ax210 cpe:2.3:h:intel:ax210:-

Configuration #10

AND
    CPE23 From Up To
OR  
  Intel Ax201 Firmware prior 22.30.0.11 version cpe:2.3:o:intel:ax201_firmware < 22.30.0.11
OR  
  Running on/with
  Intel Ax201 cpe:2.3:h:intel:ax201:-

Configuration #11

AND
    CPE23 From Up To
OR  
  Intel Ax200 Firmware prior 22.30.0.11 version cpe:2.3:o:intel:ax200_firmware < 22.30.0.11
OR  
  Running on/with
  Intel Ax200 cpe:2.3:h:intel:ax200:-

Configuration #12

AND
    CPE23 From Up To
OR  
  Intel Ac 9560 Firmware prior 22.30.0.11 version cpe:2.3:o:intel:ac_9560_firmware < 22.30.0.11
OR  
  Running on/with
  Intel Ac 9560 cpe:2.3:h:intel:ac_9560:-

Configuration #13

AND
    CPE23 From Up To
OR  
  Intel Ac 9462 Firmware prior 22.30.0.11 version cpe:2.3:o:intel:ac_9462_firmware < 22.30.0.11
OR  
  Running on/with
  Intel Ac 9462 cpe:2.3:h:intel:ac_9462:-

Configuration #14

AND
    CPE23 From Up To
OR  
  Intel Ac 9461 Firmware prior 22.30.0.11 version cpe:2.3:o:intel:ac_9461_firmware < 22.30.0.11
OR  
  Running on/with
  Intel Ac 9461 cpe:2.3:h:intel:ac_9461:-

Configuration #15

AND
    CPE23 From Up To
OR  
  Intel Ac 9260 Firmware prior 22.30.0.11 version cpe:2.3:o:intel:ac_9260_firmware < 22.30.0.11
OR  
  Running on/with
  Intel Ac 9260 cpe:2.3:h:intel:ac_9260:-

Configuration #16

AND
    CPE23 From Up To
OR  
  Intel Ac 8265 Firmware prior 20.70.21.2 version cpe:2.3:o:intel:ac_8265_firmware < 20.70.21.2
OR  
  Running on/with
  Intel Ac 8265 cpe:2.3:h:intel:ac_8265:-

Configuration #17

AND
    CPE23 From Up To
OR  
  Intel Ac 8260 Firmware prior 20.70.21.2 version cpe:2.3:o:intel:ac_8260_firmware < 20.70.21.2
OR  
  Running on/with
  Intel Ac 8260 cpe:2.3:h:intel:ac_8260:-

Configuration #18

AND
    CPE23 From Up To
OR  
  Intel Ac 3168 Firmware prior 19.51.33.1 version cpe:2.3:o:intel:ac_3168_firmware < 19.51.33.1
OR  
  Running on/with
  Intel Ac 3168 cpe:2.3:h:intel:ac_3168:-

Configuration #19

AND
    CPE23 From Up To
OR  
  Intel Ac 7265 Firmware prior 19.51.33.1 version cpe:2.3:o:intel:ac_7265_firmware < 19.51.33.1
OR  
  Running on/with
  Intel Ac 7265 cpe:2.3:h:intel:ac_7265:-

Configuration #20

AND
    CPE23 From Up To
OR  
  Intel Ac 3165 Firmware prior 19.51.33.1 version cpe:2.3:o:intel:ac_3165_firmware < 19.51.33.1
OR  
  Running on/with
  Intel Ac 3165 cpe:2.3:h:intel:ac_3165:-

Configuration #21

AND
    CPE23 From Up To
OR  
  Intel Ax1675 Firmware cpe:2.3:o:intel:ax1675_firmware:-
OR  
  Running on/with
  Intel Ax1675 cpe:2.3:h:intel:ax1675:-

Configuration #22

AND
    CPE23 From Up To
OR  
  Intel Ax1650 Firmware cpe:2.3:o:intel:ax1650_firmware:-
OR  
  Running on/with
  Intel Ax1650 cpe:2.3:h:intel:ax1650:-

Configuration #23

AND
    CPE23 From Up To
OR  
  Intel Ac 1550 Firmware cpe:2.3:o:intel:ac_1550_firmware:-
OR  
  Running on/with
  Intel Ac 1550 cpe:2.3:h:intel:ac_1550:-

Configuration #24

AND
    CPE23 From Up To
OR  
  Linux Kernel from 4.4 version and prior 4.4.271 version cpe:2.3:o:linux:linux_kernel >= 4.4 < 4.4.271
OR  
  Running on/with
  Linux Kernel from 4.9 version and prior 4.9.271 version cpe:2.3:o:linux:linux_kernel >= 4.9 < 4.9.271
OR  
  Running on/with
  Linux Kernel from 4.14 version and prior 4.14.235 version cpe:2.3:o:linux:linux_kernel >= 4.14 < 4.14.235
OR  
  Running on/with
  Linux Kernel from 4.19 version and prior 4.19.193 version cpe:2.3:o:linux:linux_kernel >= 4.19 < 4.19.193
OR  
  Running on/with
  Linux Kernel from 5.4 version and prior 5.4.124 version cpe:2.3:o:linux:linux_kernel >= 5.4 < 5.4.124
OR  
  Running on/with
  Linux Kernel from 5.10 version and prior 5.10.42 version cpe:2.3:o:linux:linux_kernel >= 5.10 < 5.10.42
OR  
  Running on/with
  Linux Kernel from 5.12 version and prior 5.12.9 version cpe:2.3:o:linux:linux_kernel >= 5.12 < 5.12.9
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...