Direct naar de inhoud
Kritieke cyberalerts voor jouw sector & systemen — direct in je inbox. Aanmelden →
CVE's Videos

← Terug naar CVE-database

CVE-2022-23304

CRITICAL · 9.8 CVSS Gepubliceerd: CWE-203

Beschrijving

The implementations of EAP-pwd in hostapd before 2.10 and wpa_supplicant before 2.10 are vulnerable to side-channel attacks as a result of cache access patterns. NOTE: this issue exists because of an incomplete fix for CVE-2019-9495.

Vendors

W1.fi Fedoraproject

Affected products

Hostapd Wpa Supplicant Fedora

References