CVE-2020-26144

Related Vulnerabilities: CVE-2020-26144  

A flaw was found in the Linux kernel, where the WiFi implementations accept plaintext A-MSDU frames as long as the first 8 bytes correspond to a valid RFC1042 (ex., LLC/SNAP) header for EAPOL. The highest threat from this vulnerability is to integrity.

Description

A flaw was found in the Linux kernel, where the WiFi implementations accept plaintext A-MSDU frames as long as the first 8 bytes correspond to a valid RFC1042 (ex., LLC/SNAP) header for EAPOL. The highest threat from this vulnerability is to integrity.

Additional Information

  • Bugzilla 1960498: CVE-2020-26144 kernel: accepting unencrypted A-MSDU frames that start with RFC1042 header
  • FAQ: Frequently asked questions about CVE-2020-26144