Salvatore Bonaccorso pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
243635fb by Salvatore Bonaccorso at 2019-08-07T18:45:28Z
Update references for CVE-2019-13377/wpa
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -4765,17 +4765,15 @@ CVE-2019-13379 (On AVTECH Room Alert 3E devices before
2.2.5, an attacker with a
NOT-FOR-US: AVTECH Room Alert
CVE-2019-13378
RESERVED
-CVE-2019-13377
+CVE-2019-13377 [Timing-based side-channel attack against WPA3's Dragonfly
handshake when using Brainpool curves]
RESERVED
- wpa <unfixed>
[stretch] - wpa <not-affected> (Introduced in 2.5)
[jessie] - wpa <not-affected> (Introduced in 2.5)
NOTE: https://wpa3.mathyvanhoef.com/#new
- NOTE:
https://w1.fi/cgit/hostap/commit/?id=8ad8585f91823ddcc3728155e288e0f9f872e31a
- NOTE:
https://w1.fi/cgit/hostap/commit/?id=70ff850e89fbc8bc7da515321b4d15b5eef70581
- NOTE:
https://w1.fi/cgit/hostap/commit/?id=d63edfa90243e9a7de6ae5c275032f2cc79fef95
NOTE: Added in v2.5:
https://w1.fi/cgit/hostap/plain/wpa_supplicant/ChangeLog:
NOTE: "added support for Brainpool Elliptic Curves with SAE"
+ NOTE: Patches: https://w1.fi/security/2019-6/
CVE-2019-13376
RESERVED
CVE-2019-13375 (A SQL Injection was discovered in D-Link Central WiFi Manager
CWM(100) ...)
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/commit/243635fb1d606a6bdea754dddc2a6ef4ffd1db61
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/commit/243635fb1d606a6bdea754dddc2a6ef4ffd1db61
You're receiving this email because of your account on salsa.debian.org.
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits