• The forum software that supports hummy.tv will be upgraded to XenForo 2.3 on Wednesday the 20th of November 2024 starting at 7pm

    There will be some periods where the forum is unavailable, please bear with us. More details can be found in the upgrade thread.

KRACK attack

prpr

Well-Known Member
Is the wpa-supplicant package vulnerable to this WPA2 vulnerability then?
(Regardless, I don't understand the version numbers of this package - the components seem to be 0.7.3 but the package itself is 0.6.10)
 
Well, yes but it isn't actually used for key negotiation - we're dependant there on something built into the Humax firmware which is probably vulnerable.

I can upgrade to wpa_supplicant 2.7 to fix the vulnerability there but we might have to accept that our Humax boxes will always remain vulnerable to this suite of attacks. This would mean that an attacker could potentially decrypt packets sent onto the network by the Humax - not the most confidential stuff in the world.
 
Last edited:
Had a read of that, and in doing so found a brand new meaning for the word 'nonce' and a brand new word to savour over, which is 'pleonasm' which I believe means something that plebs catch.:frantic:
 
Back
Top