CyberRota Analysis
AI-GeneratedA vulnerability in wpa_supplicant prior to version 2.12 allows local attackers to exploit inadequate validation in the driver-based PMKSA selection process, enabling them to bypass network context and AKMP matching for PMKSA caching. This could lead to unauthorized access to secured networks, compromising the confidentiality and integrity of network communications. Organizations using affected versions of wpa_supplicant should prioritize patching to mitigate potential security risks.
Original NVD Description
An issue in wpa_supplicant all versions before v.2.12 allows a local attacker to bypass proper network context and AKMP matching for PMKSA caching via missing validation in the driver based PMKSA selection path in wpa.c