[Git][security-tracker-team/security-tracker][master] Slightly reorder notes for CVE-2020-24588
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Thu Jun 24 13:36:52 BST 2021
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
b910e5f1 by Salvatore Bonaccorso at 2021-06-24T14:36:03+02:00
Slightly reorder notes for CVE-2020-24588
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -56573,11 +56573,12 @@ CVE-2020-24588 (The 802.11 standard that underpins Wi-Fi Protected Access (WPA,
NOTE: https://papers.mathyvanhoef.com/usenix2021.pdf
NOTE: https://www.fragattacks.com/
NOTE: https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00473.html
- NOTE: https://lore.kernel.org/linux-wireless/20210511200110.0b2b886492f0.I23dd5d685fe16d3b0ec8106e8f01b59f499dffed@changeid/
- NOTE: https://lore.kernel.org/linux-wireless/20210511200110.076543300172.I548e6e71f1ee9cad4b9a37bf212ae7db723587aa@changeid/
NOTE: https://lore.kernel.org/linux-wireless/20210511180259.159598-1-johannes@sipsolutions.net/
NOTE: https://lore.kernel.org/linux-wireless/20210511200110.25d93176ddaf.I9e265b597f2cd23eb44573f35b625947b386a9de@changeid/
NOTE: https://lore.kernel.org/linux-wireless/20210511200110.11968c725b5c.Idd166365ebea2771c0c0a38c78b5060750f90e17@changeid/
+ NOTE: Mitigation for similar attack to CVE-2020-24588:
+ NOTE: https://lore.kernel.org/linux-wireless/20210511200110.0b2b886492f0.I23dd5d685fe16d3b0ec8106e8f01b59f499dffed@changeid/
+ NOTE: https://lore.kernel.org/linux-wireless/20210511200110.076543300172.I548e6e71f1ee9cad4b9a37bf212ae7db723587aa@changeid/
NOTE: firmware-nonfree (iwlwifi-fw-2021-05-12) addressed the firmware part of the CVE
NOTE: At least in stretch the vulnerable code is not in firmware-nonfree, only in linux source.
CVE-2020-24587 (The 802.11 standard that underpins Wi-Fi Protected Access (WPA, WPA2, ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b910e5f16a73fcec715844b777e0b0bb52f59f28
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b910e5f16a73fcec715844b777e0b0bb52f59f28
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210624/b6a11deb/attachment.htm>
More information about the debian-security-tracker-commits
mailing list