CVE-2017-13082 WPA2 Vulnerability and Airports
Regarding the WIFI vulnerability outlined in CVE-2017-13082 Does anyone know if Apple will be providing a patch to the Airport firmware?
Mac Pro, macOS Sierra (10.12.4)
Regarding the WIFI vulnerability outlined in CVE-2017-13082 Does anyone know if Apple will be providing a patch to the Airport firmware?
Mac Pro, macOS Sierra (10.12.4)
Apple is now being quoted by several tech websites saying they have a patch in beta that will be released in the next few weeks for Apple Watch, iOS, OS X and Apple TV. The AirPort and Time Capsules are not affected by this potential flaw.
Source:
KRACK attack: How Apple, Google, others are responding - CNET
Source
That's not actually true. I reported an issue elsewhere, where there were scores of replies and out of nowhere, Apple Support contacted me via phone.
Well please let us know if you hear anything!
If the forum moderators see a post with "information" that is not allowed under the Terms of Use Agreement for this forum, then they will edit or remove it.
The key here is the word "IF".
I hope that's true, but I don't see how it could be true. I'd want a security researcher to verify that before I believe it, as this is a fundamental issue with WPA2. EDIT: and they don't even reference it in the comments to CNET.
And this is yet ANOTHER reason I wish TVs didn't ship with Wifi and so-called "smart" features. There's no setting to turn that nonsense off on my Samsung. It's almost certainly already vulnerable to piles of issues from (among other things) the Bluetooth and Wifi radios, not even counting this WPA2 issues. But what am I supposed to do? Quit watching TV? I mean ALL TVs are "smart" now 😠
Responding to Forrest, I've not heard anymore either about potential patches. I've heard 'rumors' and speculation about IOS 11.03 but nothing more. .Edu and businesses using Apple products like Airport Extremes, A.Expresses, yada yada, may have thousands of $$ wrapped up in hardware and I would certainly hope that Apple comes out with an Official response. These remarks should not be construed as a complaint, or speculation it should be noted that USERs are anxiously waiting on how they should individually respond to this latest security intrusion. USERs need to react but without guidance from the manufacturers of these products any response beyond that might be a waste of time.
CVE-2017-13082 WPA2 Vulnerability and Airports