Back

MEDIUM

wpa_supplicant: broken certificate subject check

Published Aug 28, 2017

Description

wpa_supplicant 2.0-16 does not properly check certificate subject name, which allows remote attackers to cause a man-in-the-middle attack.

Affected products

Remediation

Red Hat statement

Red Hat Product Security determined that this flaw was not a security vulnerability. See the Bugzilla link for more details.

Metrics

References (5)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner redhat
Published Aug 28, 2017
Updated Aug 6, 2024
Reserved Nov 18, 2014
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date Jan 28, 2015