2.9
CVSSv2

CVE-2020-26146

Published: 11/05/2021 Updated: 06/12/2021
CVSS v2 Base Score: 2.9 | Impact Score: 2.9 | Exploitability Score: 5.5
CVSS v3 Base Score: 5.3 | Impact Score: 3.6 | Exploitability Score: 1.6
VMScore: 259
Vector: AV:A/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

An issue exists on Samsung Galaxy S3 i9305 4.4.4 devices. The WPA, WPA2, and WPA3 implementations reassemble fragments with non-consecutive packet numbers. An adversary can abuse this to exfiltrate selected fragments. This vulnerability is exploitable when another device sends fragmented frames and the WEP, CCMP, or GCMP data-confidentiality protocol is used. Note that WEP is vulnerable to this attack by design.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

samsung galaxy_i9305_firmware 4.4.4

arista c-250_firmware

arista c-260_firmware

arista c-230_firmware

arista c-235_firmware

arista c-200_firmware

arista c-120_firmware

arista c-130_firmware

arista c-100_firmware

arista c-110_firmware

arista o-105_firmware

arista w-118_firmware

arista c-75_firmware -

arista o-90_firmware -

arista c-65_firmware -

arista w-68_firmware -

siemens scalance_w700_ieee_802.11n_firmware

siemens scalance_w1700_ieee_802.11ac_firmware

siemens scalance_w1750d_firmware

Vendor Advisories

A vulnerability was found in Linux kernel, where the WiFi implementation reassemble fragments with non-consecutive packet numbers An adversary can abuse this to exfiltrate selected fragments This vulnerability is exploitable when another device sends fragmented frames and the WEP, CCMP, or GCMP data-confidentiality protocol is used Note that WEP ...
On May 11, 2021, the research paper Fragment and Forge: Breaking Wi-Fi Through Frame Aggregation and Fragmentation was made public This paper discusses 12 vulnerabilities in the 80211 standard One vulnerability is in the frame aggregation functionality, two vulnerabilities are in the frame fragmentation functionality, and the other nine are impl ...
Severity Unknown Remote Unknown Type Unknown Description AVG-1879 linux 5122arch1-1 Medium Vulnerable ...

Mailing Lists

<!--X-Body-Begin--> <!--X-User-Header--> oss-sec mailing list archives <!--X-User-Header-End--> <!--X-TopPNI--> By Date By Thread </form> <!--X-TopPNI-End--> <!--X-MsgBody--> <!--X-Subject-Header-Begin--> various 80211 security issues - fragattackscom <!--X-Subject-Header-End--> <!--X-Head-of-Message--> From: Johannes Berg &l ...