Wi-Fi Security Protocol Key Reinstallation Attack (KRACK) Impact on RSA Products
Originally Published: 2017-10-23
Article Number
Applies To
CVE Identifier(s)
Article Summary
- CVE-2017-13077 - Reinstallation of the pairwise encryption key (PTK-TK) in the 4-way handshake
- CVE-2017-13078 - Reinstallation of the group key (GTK) in the 4-way handshake
- CVE-2017-13079 - Reinstallation of the integrity group key (IGTK) in the 4-way handshake
- CVE-2017-13080 - Reinstallation of the group key (GTK) in the group key handshake
- CVE-2017-13081 - Reinstallation of the integrity group key (IGTK) in the group key handshake
- CVE-2017-13082 - Accepting a retransmitted Fast BSS Transition (FT) Reassociation Request and reinstalling the pairwise encryption key (PTK-TK) while processing it
- CVE-2017-13084 - Reinstallation of the STK key in the PeerKey handshake
- CVE-2017-13086 - Reinstallation of the Tunneled Direct-Link Setup (TDLS) PeerKey (TPK) key in the TDLS handshake
- CVE-2017-13087 - Reinstallation of the group key (GTK) when processing a Wireless Network Management (WNM) Sleep Mode Response frame
- CVE-2017-13088 - Reinstallation of the integrity group key (IGTK) when processing a Wireless Network Management (WNM) Sleep Mode Response frame
Resolution
Notes
For information on Dell EMC products, see https://support.emc.com/kb/511474
References:
- Research paper entitled "Key Reinstallation Attacks: Forcing Nonce Reuse in WPA2": https://papers.mathyvanhoef.com/ccs2017.pdf
- Research website: https://www.krackattacks.com/
- CERT/CC Vulnerability Note VU#228519: https://www.kb.cert.org/vuls/id/228519
Disclaimer
Related Articles
Customer getting collected on every login to FI website 1Number of Views How to move BINs from one FI to another in same region 19Number of Views How to suppress the class attribute from RSA RADIUS for RSA Authentication Manager 8.x 125Number of Views Data Purging does not complete in the configured time limit in RSA Identity Governance & Lifecycle 43Number of Views AAH Client can not see a new FI loaded to their region 11Number of Views
Trending Articles
RSA MFA Agent 2.4.3 for Microsoft Windows Group Policy Object Template Guide RSA Release Notes for RSA Authentication Manager 8.8 RSA MFA Agent 2.4.3 for Microsoft Windows Installation and Administration Guide RSA MFA Agent 2.3.6 for Microsoft Windows Installation and Administration Guide Deploying RSA Authenticator 6.2.2 for Windows Using DISM
Don't see what you're looking for?