Lucene search

K
prionPRIOn knowledge basePRION:CVE-2019-9496
HistoryApr 17, 2019 - 2:29 p.m.

Authentication flaw

2019-04-1714:29:00
PRIOn knowledge base
www.prio-n.com
10

7.4 High

AI Score

Confidence

High

0.011 Low

EPSS

Percentile

84.6%

An invalid authentication sequence could result in the hostapd process terminating due to missing state validation steps when processing the SAE confirm message when in hostapd/AP mode. All version of hostapd with SAE support are vulnerable. An attacker may force the hostapd process to terminate, performing a denial of service attack. Both hostapd with SAE support and wpa_supplicant with SAE support prior to and including version 2.7 are affected.