8.1
CVSSv3

CVE-2020-17497

Published: 12/08/2020 Updated: 07/11/2023
CVSS v2 Base Score: 4.8 | Impact Score: 4.9 | Exploitability Score: 6.5
CVSS v3 Base Score: 8.1 | Impact Score: 5.2 | Exploitability Score: 2.8
VMScore: 427
Vector: AV:A/AC:L/Au:N/C:P/I:P/A:N

Vulnerability Summary

eapol.c in iNet wireless daemon (IWD) up to and including 1.8 allows malicious users to trigger a PTK reinstallation by retransmitting EAPOL Msg4/4.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

intel inet wireless daemon

Vendor Advisories

Debian Bug report logs - #968996 iwd: CVE-2020-17497 Package: src:iwd; Maintainer for src:iwd is Andreas Henriksson <andreas@fatalse>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Tue, 25 Aug 2020 14:51:02 UTC Severity: important Tags: security, upstream Found in version iwd/18-1 Reply or subsc ...