cvelist/2008/5xxx/CVE-2008-5230.json

98 lines
3.3 KiB
JSON

{
"CVE_data_meta" : {
"ASSIGNER" : "cve@mitre.org",
"ID" : "CVE-2008-5230",
"STATE" : "PUBLIC"
},
"affects" : {
"vendor" : {
"vendor_data" : [
{
"product" : {
"product_data" : [
{
"product_name" : "n/a",
"version" : {
"version_data" : [
{
"version_value" : "n/a"
}
]
}
}
]
},
"vendor_name" : "n/a"
}
]
}
},
"data_format" : "MITRE",
"data_type" : "CVE",
"data_version" : "4.0",
"description" : {
"description_data" : [
{
"lang" : "eng",
"value" : "The Temporal Key Integrity Protocol (TKIP) implementation in unspecified Cisco products and other vendors' products, as used in WPA and WPA2 on Wi-Fi networks, has insufficient countermeasures against certain crafted and replayed packets, which makes it easier for remote attackers to decrypt packets from an access point (AP) to a client and spoof packets from an AP to a client, and conduct ARP poisoning attacks or other attacks, as demonstrated by tkiptun-ng."
}
]
},
"problemtype" : {
"problemtype_data" : [
{
"description" : [
{
"lang" : "eng",
"value" : "n/a"
}
]
}
]
},
"references" : {
"reference_data" : [
{
"name" : "[dailydave] 20081107 All Ur WiFi(WPA) R Belong 2 PacSec",
"refsource" : "MLIST",
"url" : "http://lists.immunitysec.com/pipermail/dailydave/2008-November/005413.html"
},
{
"name" : "http://arstechnica.com/articles/paedia/wpa-cracked.ars",
"refsource" : "MISC",
"url" : "http://arstechnica.com/articles/paedia/wpa-cracked.ars"
},
{
"name" : "http://dl.aircrack-ng.org/breakingwepandwpa.pdf",
"refsource" : "MISC",
"url" : "http://dl.aircrack-ng.org/breakingwepandwpa.pdf"
},
{
"name" : "http://radajo.blogspot.com/2008/11/wpatkip-chopchop-attack.html",
"refsource" : "MISC",
"url" : "http://radajo.blogspot.com/2008/11/wpatkip-chopchop-attack.html"
},
{
"name" : "http://trac.aircrack-ng.org/svn/trunk/src/tkiptun-ng.c",
"refsource" : "MISC",
"url" : "http://trac.aircrack-ng.org/svn/trunk/src/tkiptun-ng.c"
},
{
"name" : "http://www.aircrack-ng.org/doku.php?id=tkiptun-ng",
"refsource" : "MISC",
"url" : "http://www.aircrack-ng.org/doku.php?id=tkiptun-ng"
},
{
"name" : "20081121 Cisco Response to TKIP Encryption Weakness",
"refsource" : "CISCO",
"url" : "http://www.cisco.com/en/US/products/products_security_response09186a0080a30036.html"
},
{
"name" : "32164",
"refsource" : "BID",
"url" : "http://www.securityfocus.com/bid/32164"
}
]
}
}