5 ms·
Does this resolve the issue on the AP side of things? Could I theoretically have an AP update that would resolve this with no need to update clients?
by rightos 9y ago
Does this resolve the issue on the AP side of things? Could I theoretically have an AP update that would resolve this with no need to update clients?
- tesseract 9y agoUnfortunately no, from what I understand this is primarily an attack against clients.
- rightos 9y agoAh yes, I see now that the patch is actually to wpa_supplicant. Well, hopefully this means no kernel patch will be needed.
- pritambaral 9y agoBoth APs and clients need to be patched[0]. Mitigations are possible on AP side if no updates are available[1]. [0]: "Finally, although an unpatched client can still connect to a patched AP, and vice versa, both the client and AP must be patched to defend against all attacks!" [1]: "you can try to mitigate attacks against routers and access points by disabling client functionality (which is for example used in repeater modes) and disabling 802.11r (fast roaming)."