Related Vulnerabilities: CVE-2017-13086  

A vulnerability has been discovered that allows reinstallation of the Tunneled Direct-Link Setup (TDLS) PeerKey (TPK) key in the TDLS handshake.

Severity High

Remote Yes

Type Man-in-the-middle

Description

A vulnerability has been discovered that allows reinstallation of the Tunneled Direct-Link Setup (TDLS) PeerKey (TPK) key in the TDLS handshake.

AVG-454 wpa_supplicant 1:2.5-1 1:2.6-1 High Fixed

AVG-453 hostapd 2.5-1 2.6-1 High Fixed

https://w1.fi/cgit/hostap/commit/?id=dabdef9e048b17b22b1c025ad592922eab30dda8