NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.
Forum Discussion
AngryDog
Oct 16, 2017Guide
KRACK Vulnerabilities
Does the latest firmware fix any of the below vulnerabilities? CVE-2017-13077, 13078, 13079, 13080, 13081, 13082, 13084, 13086, 13087, 13088 If not, when will firmware be released to fix thes...
- Oct 25, 2017
Let me share this forum link:
AngryDog
Oct 16, 2017Guide
Ubiquiti are also releasing a patch. I belive that they have one available on beta test. I've been trying to get my manager to move to Ubiquiti for a while, this could push us..
Auri
Oct 16, 2017Star
I also added a note to their IdeaBoard:
Give it a thumb up and get their attention?
- AngryDogOct 16, 2017Guide
Done! This is serious and needs addressing ASAP.
My only query is, is that does a patched AP with an unpatched device (like a mobile phone / laptop) mean that it is secure?
- AuriOct 16, 2017Star
From what I understand, as long as ONE device is patched, you're OK. It appears that the hack works by forging a copy of the Wi-Fi network, then getting the device onto the forged network. If the device doesn't require a certificate re-send on the hop to the new network, then it's vulnerable. I tweeted a link:
http://www.arubanetworks.com/assets/alert/ARUBA-PSA-2017-007_FAQ_Rev-1.pdf
Ideally, you want the client OS patched, and all routers as quickly as possible.
- AngryDogOct 16, 2017Guide
Reading more into this, and thanks to your link, traffic sent via HTTPS doesn't seem to be affected?
Also, would using a VPN negate this as well?
Related Content
NETGEAR Academy

Boost your skills with the Netgear Academy - Get trained, certified and stay ahead with the latest Netgear technology!
Join Us!