-Infinity
0

Vendor Risk Score

See how w1.fi compares to other vendors in security performance

View Risk Score →

Hostapd Hostapdhostapd fails to process crafted RADIUS packets properly. When hostapd authenticates wi-fi devices w…

Risk 20
Severity
3.7
First published (updated )

Hostapd HostapdLast updated 5 March 2025

Risk 40
Severity
6.5
First published (updated )

debian/wpaLast updated 11 September 2024

Risk 72
Severity
8.8
First published (updated )

Fedoraproject FedoraThe implementation of PEAP in wpa_supplicant through 2.10 allows authentication bypass. For a succes…

Risk 37
Severity
6.5
First published (updated )

debian/wpaLast updated 4 March 2025

Risk 86
Severity
9.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

debian/wpaLast updated 4 March 2025

Risk 86
Severity
9.8
First published (updated )

w1.fi hostapdInput Validation

Risk 27
Severity
5.3
First published (updated )

Fedoraproject FedoraA vulnerability was discovered in how p2p/p2p_pd.c in wpa_supplicant before 2.10 processes P2P (Wi-F…

Risk 70
Severity
7.5
First published (updated )

debian/minidlnaLast updated 24 July 2024

Risk 51
Severity
7.8
First published (updated )

Debian Debian Linuxhostapd before 2.6, in EAP mode, makes calls to the rand() and random() standard library functions w…

Risk 43
Severity
7.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

w1.fi hostapdAn exploitable denial-of-service vulnerability exists in the 802.11w security state handling for hos…

Risk 43
Severity
7.4
First published (updated )

w1.fi hostapdAn exploitable denial-of-service vulnerability exists in the hostapd 2.6, where an attacker could tr…

Risk 43
Severity
7.4
First published (updated )

Canonical Ubuntu LinuxLast updated 25 August 2025

Risk 40
Severity
6.5
First published (updated )

debian/wpaLast updated 25 August 2025

Risk 35
Severity
5.9
First published (updated )

debian/wpaNull Pointer Dereference

Risk 36
Severity
5.9
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

FreeBSD FreeBSDThe implementations of EAP-PWD in hostapd and wpa_supplicant are vulnerable to side-channel attacks as a result of cache access patterns

Risk 23
Severity
4.3
First published (updated )

FreeBSD FreeBSDThe implementations of EAP-PWD in hostapd EAP Server do not validate the scalar and element values in EAP-pwd-Commit

Risk 78
Severity
8.1
First published (updated )

Fedoraproject FedoraThe implementations of EAP-PWD in hostapd EAP Server and wpa_supplicant EAP Peer do not validate the scalar and element values in EAP-pwd-Commit

Risk 78
Severity
8.1
First published (updated )

FreeBSD FreeBSDThe implementations of EAP-PWD in wpa_supplicant EAP Peer do not validate the scalar and element values in EAP-pwd-Commit

Risk 78
Severity
8.1
First published (updated )

FreeBSD FreeBSDThe implementations of SAE in hostapd and wpa_supplicant are vulnerable to side-channel attacks

Risk 35
Severity
5.9
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Fedoraproject FedoraAn invalid authentication sequence could result in the hostapd process terminating due to missing state validation steps

Risk 43
Severity
7.5
First published (updated )

w1.fi hostapdLast updated 25 August 2025

Risk 45
Severity
7.5
First published (updated )

Canonical Ubuntu LinuxLast updated 25 August 2025

Risk 40
Severity
6.5
First published (updated )

debian/wpaBuffer Overflow

Risk 35
Severity
5.9
First published (updated )

w1.fi Wpa SupplicantWi-Fi Protected Access (WPA and WPA2) allows reinstallation of the Station-To-Station-Link (STSL) Tr…

Risk 53
Severity
6.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

w1.fi Wpa SupplicantWi-Fi Protected Access (WPA and WPA2) that supports IEEE 802.11w allows reinstallation of the Integr…

Risk 33
Severity
5.3
First published (updated )

w1.fi Wpa SupplicantWi-Fi Protected Access (WPA and WPA2) that supports IEEE 802.11w allows reinstallation of the Integr…

Risk 33
Severity
5.3
First published (updated )

w1.fi Wpa SupplicantWi-Fi Protected Access (WPA and WPA2) that support 802.11v allows reinstallation of the Integrity Gr…

Risk 33
Severity
5.3
First published (updated )

w1.fi Wpa SupplicantWi-Fi Protected Access (WPA and WPA2) that support 802.11v allows reinstallation of the Group Tempor…

Risk 33
Severity
5.3
First published (updated )

w1.fi Wpa SupplicantWi-Fi Protected Access (WPA and WPA2) allows reinstallation of the Tunneled Direct-Link Setup (TDLS)…

Risk 54
Severity
6.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203