See https://w1.fi/security/2018-1/unauthenticated-eapol-key-decryption.txt https://twitter.com/vanhoefm/status/1027206021763293185 Patch: https://w1.fi/security/2018-1/
wpa_supplicant-2.6-r10 is in the tree with a fix. I'd also like it stabilized anyway, so I've opened a bug https://bugs.gentoo.org/672584
x86 stable
amd64 stable
ppc/ppc64 stable
arm stable
I'm having issues with this wpa_supplicant version. No errors in the log, just ping of the gateway stuck for a moment, than recovers by itself, than stuck again (not only ping, like whole connection, just tested by the ping). Reverting back to 2.6-r6 resolves the problem. My WIFI: Killer AC-1535 03:00.0 Network controller [0280]: Qualcomm Atheros QCA6174 802.11ac Wireless Network Adapter [168c:003e] (rev 32) Subsystem: Bigfoot Networks, Inc. QCA6174 802.11ac Wireless Network Adapter [1a56:1535] Kernel driver in use: ath10k_pci Kernel modules: ath10k_pci Not sure what else I can provide, please suggest.
Please file an own bug for your issue.
GLSA Vote: No Arches and Maintainer(s), Thank you for your work. Maintainer(s), please drop the vulnerable version(s).