Group Temporal Key Reinstallation Vulnerability in Wi-Fi Protected Access
CVE-2017-13078
5.3MEDIUM
Key Information:
- Vendor
Wi-fi Alliance
- Vendor
- CVE Published:
- 17 October 2017
What is CVE-2017-13078?
The WPA and WPA2 protocols allow for the reinstallation of the Group Temporal Key (GTK) during the four-way handshake process. This vulnerability enables an attacker within range to intercept and replay frames sent between access points and clients. As a result, sensitive data can be compromised, highlighting the importance of securing wireless connections and implementing appropriate defenses against replay attacks.
Affected Version(s)
Wi-Fi Protected Access (WPA and WPA2) WPA
Wi-Fi Protected Access (WPA and WPA2) WPA2