CVE-2026-78807
Received Received - Intake

Local Privilege Escalation in wpa_supplicant

Vulnerability report for CVE-2026-78807, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-09-11

Last updated on: 2026-09-11

Assigner: MITRE

Description

An issue in wpa_supplicant all versions before v.2.12 allows a local attacker to bypass proper network context and AKMP matching for PMKSA caching via missing validation in the driver based PMKSA selection path in wpa.c

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-09-11
Last Modified
2026-09-11
Generated
2026-09-11
AI Q&A
2026-09-11
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
openwrt wpa_supplicant to 2.12 (exc)

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-UNKNOWN

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

CVE-2026-78807 is a flaw in wpa_supplicant versions before v2.12 where a local attacker can bypass network context and AKMP matching for PMKSA caching. The issue occurs due to missing validation in the driver-based PMKSA selection path, allowing an attacker to trick the system into using an unrelated PMKSA entry during key establishment.

Detection Guidance

To detect this vulnerability, check the version of wpa_supplicant on your system. Run 'wpa_supplicant -v' to see the installed version. If it is below v2.12, the system is vulnerable. Additionally, monitor network authentication logs for unusual PMKSA caching behavior or mismatched network contexts during key establishment.

Impact Analysis

An attacker could exploit this to bypass authentication steps for a network, potentially gaining unauthorized access. While valid credentials are still required for any configured network, the flaw enables misuse of PMKSA entries established via SAE to attack other networks using WPA2-PSK or WPA2/WPA3-Enterprise.

Mitigation Strategies

Immediately update wpa_supplicant to version 2.12 or later. If updating is not possible, apply the specific commit mentioned in the security advisory. Ensure network context and AKMP matching rules are enforced for PMKSA entry acceptance. Avoid using vulnerable configurations for WPA2-Personal or WPA2/WPA3-Enterprise networks.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-78807. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart