<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T10:37:09.706913+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2017-02268</id>
    <title>bdu:2017-02268</title>
    <updated>2026-10-02T10:37:09.835101+00:00</updated>
    <content>bdu:2017-02268</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2017-02268"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2017-13082</id>
    <title>Withdrawn: BELL-CVE-2017-13082 — CVE-2017-13082 does not affect BellSoft software</title>
    <updated>2026-10-02T10:37:09.835141+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>
          <strong>Withdrawn by the publisher.</strong>
        </p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2017-13082"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2017-ale-014</id>
    <title>certfr-2017-ale-014 — Plusieurs vulnérabilités ont été découvertes dans WPA/WPA2. Il est
possible lors de l'établissement d'une session de co…</title>
    <updated>2026-10-02T10:37:09.835159+00:00</updated>
    <content>certfr-2017-ale-014</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2017-ale-014"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2017-avi-358</id>
    <title>certfr-2017-avi-358 — De multiples vulnérabilités ont été découvertes dans Debian sur le
protocole WPA/WPA2. Elles permettent à un attaquant…</title>
    <updated>2026-10-02T10:37:09.835179+00:00</updated>
    <content>certfr-2017-avi-358</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2017-avi-358"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2017-30401</id>
    <title>cnvd-2017-30401</title>
    <updated>2026-10-02T10:37:09.835192+00:00</updated>
    <content>cnvd-2017-30401</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2017-30401"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-77548</id>
    <title>EUVD-2026-77548</title>
    <updated>2026-10-02T10:37:09.835203+00:00</updated>
    <content>EUVD-2026-77548</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-77548"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2017-13082</id>
    <title>fkie_cve-2017-13082</title>
    <updated>2026-10-02T10:37:09.835228+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Wi-Fi Protected Access (WPA and WPA2) that supports IEEE 802.11r allows reinstallation of the Pairwise Transient Key (PTK) Temporal Key (TK) during the fast BSS transmission (FT) handshake, allowing an attacker within radio range to replay, decrypt, or spoof frames.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2017-13082"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-fx3c-8pqx-5v4c</id>
    <title>GHSA-fx3c-8pqx-5v4c</title>
    <updated>2026-10-02T10:37:09.835258+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Wi-Fi Protected Access (WPA and WPA2) that supports IEEE 802.11r allows reinstallation of the Pairwise Transient Key (PTK) Temporal Key (TK) during the fast BSS transmission (FT) handshake, allowing an attacker within radio range to replay, decrypt, or spoof frames.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-fx3c-8pqx-5v4c"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2017-13082</id>
    <title>gsd-2017-13082</title>
    <updated>2026-10-02T10:37:09.835273+00:00</updated>
    <content>gsd-2017-13082</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2017-13082"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/icsa-17-299-02</id>
    <title>ICSA-17-299-02 — Rockwell Automation Stratix 5100 (Update A)</title>
    <updated>2026-10-02T10:37:09.835283+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Key reinstallation attacks (KRACK) work against the four-way handshake of the WPA2 protocol. KRACK takes advantage of the retransmission of a handshake message to prompt the installation of the same encryption key every time it receives message 3 from the access point. Retransmission of the handshake message from the access point occurs if a proper client acknowledgement is not received to the initial message; retransmission resets the nonce value and replay counter to their initial values. A malicious actor could force these nonce resets by replaying the appropriate handshake message, which could allow for injection and decryption of arbitrary packets, hijacking of TCP connections, injection of HTTP content, or replaying of unicast or multicast data frames on the targeted device.CVE-2017-13082 has been assigned to this vulnerability. A CVSS v3 base score of 6.9 has been calculated; the CVSS vector string is (AV:A/AC:H/PR:N/UI:N/S:C/C:L/I:H/A:N).</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/icsa-17-299-02"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2020:0222-1</id>
    <title>openSUSE-SU-2020:0222-1 — Security update for hostapd</title>
    <updated>2026-10-02T10:37:09.835306+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for hostapd</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2020:0222-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2020:3380-1</id>
    <title>SUSE-SU-2020:3380-1 — Security update for wpa_supplicant</title>
    <updated>2026-10-02T10:37:09.835324+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for wpa_supplicant</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2020:3380-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2017-13082</id>
    <title>UBUNTU-CVE-2017-13082</title>
    <updated>2026-10-02T10:37:09.835346+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:14.04:LTS: wpa, Ubuntu:16.04:LTS: wpa</p>
<p>Wi-Fi Protected Access (WPA and WPA2) that supports IEEE 802.11r allows reinstallation of the Pairwise Transient Key (PTK) Temporal Key (TK) during the fast BSS transmission (FT) handshake, allowing an attacker within radio range to replay, decrypt, or spoof frames.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2017-13082"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2017-005</id>
    <title>VDE-2017-005 — Pepperl+Fuchs / ecom instruments: WLAN enabled products utilizing WPA2 encryption</title>
    <updated>2026-10-02T10:37:09.835367+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Multiple security issues and vulnerabilities within the WPA2 standard have been identified and publicized by Mr. Mathy Vanhoef of KU Leuven. These vulnerabilities may allow the reinstallation of a pairwise transient key, a group key, or an integrity key on either a wireless client or a wireless access point (AP). In consequence, an attacker could establish a man-in-the-middle position between AP and client facilitating packet decryption and injection.  
  
ecom instruments is a subsidiary company of PEPPERL+FUCHS.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2017-005"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2019-005</id>
    <title>VDE-2019-005 — Endress+Hauser: WIFI enabled products utilising WPA2</title>
    <updated>2026-10-02T10:37:09.835387+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Multiple security issues and vulnerabilities within the WPA2 standard have been identified and publicized by Mr. Mathy Vanhoef of KU Leuven. These vulnerabilities may allow the reinstallation of a pairwise transient key, a group key, or an integrity key on either a wireless client or a wireless access point (AP). In consequence, an attacker could establish a man-in-the-middle position between AP and client facilitating packet decryption and injection.
The Field Xpert SFX370 and SFX350 handhelds are manufactured by Pepperl+Fuchs/ecom instruments for Endress+Hauser.
The Advisory for Pepperl+Fuchs/ecom instruments can be found here: VDE-2017-005</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2019-005"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-0369</id>
    <title>WID-SEC-W-2025-0369 — IEEE WPA2: Mehrere Schwachstellen</title>
    <updated>2026-10-02T10:37:09.835406+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in IEEE WPA2 ausnutzen, um Sicherheitsvorkehrungen zu umgehen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2025-0369"/>
  </entry>
</feed>
