CVE-2026-78807
Awaiting Analysis Awaiting Analysis - Queue

Local Privilege Escalation in wpa_supplicant

Vulnerability report for CVE-2026-78807, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-09-11

Last updated on: 2026-09-22

Assigner: MITRE

Description

An issue in wpa_supplicant all versions before v.2.12 allows a local attacker to bypass proper network context and AKMP matching for PMKSA caching via missing validation in the driver based PMKSA selection path in wpa.c

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-09-11
Last Modified
2026-09-22
Generated
2026-10-02
AI Q&A
2026-09-11
EPSS Evaluated
2026-09-29
NVD
EUVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
openwrt wpa_supplicant to 2.12 (exc)

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-346 The product does not properly verify that the source of data or communication is valid.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

CVE-2026-78807 is a flaw in wpa_supplicant versions before v2.12 where a local attacker can bypass network context and AKMP matching for PMKSA caching. The issue occurs due to missing validation in the driver-based PMKSA selection path, allowing an attacker to trick the system into using an unrelated PMKSA entry during key establishment.

Detection Guidance

To detect this vulnerability, check the version of wpa_supplicant on your system. Run 'wpa_supplicant -v' to see the installed version. If it is below v2.12, the system is vulnerable. Additionally, monitor network authentication logs for unusual PMKSA caching behavior or mismatched network contexts during key establishment.

Impact Analysis

An attacker could exploit this to bypass authentication steps for a network, potentially gaining unauthorized access. While valid credentials are still required for any configured network, the flaw enables misuse of PMKSA entries established via SAE to attack other networks using WPA2-PSK or WPA2/WPA3-Enterprise.

Compliance Impact

This vulnerability could potentially impact compliance with standards like GDPR and HIPAA by enabling unauthorized network access. If exploited, it may allow attackers to bypass authentication steps, leading to unauthorized data access or network usage. This could violate data protection requirements under GDPR (e.g., unauthorized access to personal data) or HIPAA (e.g., unauthorized access to protected health information).

Mitigation Strategies

Immediately update wpa_supplicant to version 2.12 or later. If updating is not possible, apply the specific commit mentioned in the security advisory. Ensure network context and AKMP matching rules are enforced for PMKSA entry acceptance. Avoid using vulnerable configurations for WPA2-Personal or WPA2/WPA3-Enterprise networks.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-78807. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart