CVE-2025-24912

hostapd fails to process crafted RADIUS packets properly. When hostapd authenticates wi-fi devices with RADIUS authentication, an attacker in the position between the hostapd and the RADIUS server may inject crafted RADIUS packets and force RADIUS authentications to fail.
Configurations

No configuration.

History

12 Mar 2025, 05:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-03-12 05:15

Updated : 2025-03-12 05:15


NVD link : CVE-2025-24912

Mitre link : CVE-2025-24912

CVE.ORG link : CVE-2025-24912


JSON object : View

Products Affected

No product.

CWE
CWE-826

Premature Release of Resource During Expected Lifetime