Total vulnerabilities in the database
An issue was discovered on Samsung Galaxy S3 i9305 4.4.4 devices. The WPA, WPA2, and WPA3 implementations reassemble fragments with non-consecutive packet numbers. An adversary can abuse this to exfiltrate selected fragments. This vulnerability is exploitable when another device sends fragmented frames and the WEP, CCMP, or GCMP data-confidentiality protocol is used. Note that WEP is vulnerable to this attack by design.
Software | From | Fixed in |
---|---|---|
samsung / galaxy_i9305_firmware | 4.4.4 | 4.4.4.x |
arista / c-250_firmware | - | 10.0.1-31 |
arista / c-260_firmware | - | 10.0.1-31 |
arista / c-230_firmware | - | 10.0.1-31 |
arista / c-235_firmware | - | 10.0.1-31 |
arista / c-200_firmware | - | 11.0.0-36 |
arista / c-120_firmware | - | 11.0.0-36 |
arista / c-130_firmware | - | 11.0.0-36 |
arista / c-100_firmware | - | 11.0.0-36 |
arista / c-110_firmware | - | 11.0.0-36 |
arista / o-105_firmware | - | 11.0.0-36 |
arista / w-118_firmware | - | 11.0.0-36 |
siemens / scalance_w700_ieee_802.11n_firmware | - | - |
siemens / scalance_w1700_ieee_802.11ac_firmware | - | - |
siemens / scalance_w1750d_firmware | - | 8.7.1.3 |