CVE-2016-4476 is a denial-of-service vulnerability affecting hostapd and wpa_supplicant versions 0.6.7 through 2.5, including those used in Canonical Ubuntu Linux. Remote attackers can exploit this by injecting newline or carriage return characters into passphrase parameters during a crafted WPS operation, leading to a daemon outage. This vulnerability has a CVSS score of 7.5 (High), indicating a network-based attack with low complexity and a high impact on availability. While no active exploits or public exploit code (Metasploit, Nuclei, ExploitDB) are currently known, the vulnerability has garnered some community discussion and media coverage, suggesting awareness within the security community.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 0.6.7, <= 2.5CPE matchmatch criteria | cpe:2.3:a:w1.fi:hostapd:*:*:*:*:*:*:*:* | ||
>= 0.6.7, <= 2.5CPE matchmatch criteria | cpe:2.3:a:w1.fi:wpa_supplicant:*:*:*:*:*:*:*:* | ||
14.04CPE matchmatch criteria | cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:esm:*:*:* | ||
16.04CPE matchmatch criteria | cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:* | ||
17.04CPE matchmatch criteria | cpe:2.3:o:canonical:ubuntu_linux:17.04:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.