Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The implementations of EAP-pwd in hostapd before 2.10 and wpa_supplicant before 2.10 are vulnerable to side-channel attacks as a result of cache access patterns. NOTE: this issue exists because of an incomplete fix for CVE-2019-9495.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
EAP-pwd 加密问题漏洞
Vulnerability Description
EAP-pwd是一种使用共享密码进行身份验证的 EAP 身份验证方法。 EAP-pwd 中存在加密问题漏洞,该漏洞源于产品的 hostapd 和 wpa supplicant 组件存在缓存访问模式错误。攻击者可通过该漏洞发起侧通道攻击。
CVSS Information
N/A
Vulnerability Type
N/A