SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2020-24588

Against devices that support receiving non-SSP A-MSDU frames (which is mandatory as part of 802.11n), an adversary can abuse this to inject arbitrary network packets.

LOW 3.5EPSS 3.54%

Does this matter?

Lower severity and a low EPSS score (3.54%). Track it; it rarely justifies an emergency change on its own.

Description

The 802.11 standard that underpins Wi-Fi Protected Access (WPA, WPA2, and WPA3) and Wired Equivalent Privacy (WEP) doesn't require that the A-MSDU flag in the plaintext QoS header field is authenticated. Against devices that support receiving non-SSP A-MSDU frames (which is mandatory as part of 802.11n), an adversary can abuse this to inject arbitrary network packets.

CVSS 3.1
3.5 LOWCVSS:3.1/AV:A/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
EPSS
3.54% probability · 89th percentile
CISA KEV
Not listed
Weakness
CWE-327
Affected
ieee/ieee 802.11 · linux/mac80211 · microsoft/windows 10 · microsoft/windows 7 · microsoft/windows 8.1 · microsoft/windows rt 8.1 · microsoft/windows server 2008 · microsoft/windows server 2012 · microsoft/windows server 2016 · microsoft/windows server 2019 · debian/debian linux · siemens/scalance w1748-1 firmware · siemens/scalance w1750d firmware · siemens/scalance w1788-1 firmware · siemens/scalance w1788-2 firmware · siemens/scalance w1788-2ia firmware · siemens/scalance w721-1 firmware · siemens/scalance w722-1 firmware · siemens/scalance w734-1 firmware · siemens/scalance w738-1 firmware · +40 more
Source
cve@mitre.org

References

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.