CVE-2019-16275 is a denial-of-service vulnerability affecting hostapd and wpa_supplicant versions prior to 2.10, impacting Canonical, Debian, and w1.fi products. It allows an attacker within Wi-Fi range to send a crafted 802.11 frame, causing an incorrect disconnection indication due to mishandled source address validation, bypassing PMF protections. Rated Medium (CVSS 6.5), this vulnerability requires adjacent network access with low attack complexity and results in high availability impact. There is no evidence of active exploitation, public exploit code, or significant community discussion, and it is not listed in CISA's KEV catalog.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 2.9CPE matchmatch criteria | cpe:2.3:a:w1.fi:hostapd:*:*:*:*:*:*:*:* | ||
<= 2.9CPE matchmatch criteria | cpe:2.3:a:w1.fi:wpa_supplicant:*:*:*:*:*:*:*:* | ||
8.0CPE matchmatch criteria | cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:* | ||
10.0CPE matchmatch criteria | cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:* | ||
12.04CPE matchmatch criteria | cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:esm:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
CVE-2019-16275
Aug 11, 2020wpa_supplicant: AP mode PMF disconnection protection bypass
Sep 11, 2019hostapd before 2.10 and wpa_supplicant before 2.10 allow an incorrect indication of disconnection in certain situations because source address validation is mishandled. This is a denial of service that should have been prevented by PMF (aka management frame protection). The attacker must send a crafted 802.11 frame from a location that is within the 802.11 communications range.
Sep 10, 2019