Security advisory for Kr00k WiFi vulnerability CVE-2019-15126

From Thomas-Krenn-Wiki
Jump to navigation Jump to search

On 26.02.2020 information about the Kr00k WiFi vulnerability (CVE-2019-15126) was published. This vulnerability affects Broadcom and Cypress WiFi Chips, among others, routers and mobile devices.[1] Products of Thomas-Krenn are not affected according to the present knowledge, because the used WLAN modules are based on WLAN chips from Realtek and Intel.

Overview WiFi products at Thomas-Krenn

The following table shows WLAN modules available at Thomas-Krenn and the respective WLAN chips installed:

Product Available for the following Thomas-Krenn products (optional) WiFi chip
Azurewave AW-NB159H Mini PCIe half size Wifi Modul LES plus, LES video Realtek RTL8723BE
ASRock DeskMini WiFi Kit Business-PC PI2D Intel AC-3168[2]
Intel AC 7260 Mini PCIe half size Wifi Modul LES v3, LES industrial, LES video, ECS v1 Intel AC-7260[3]

Further information

References

  1. Kr00k (eset.com) [...] ESET tested a number of popular devices with Broadcom and Cypress Wi-Fi chips and confirmed a manifestation of the Kr00k vulnerability. We have also tested some devices with Wi-Fi chips from other manufacturers, including Qualcomm, Realtek, Ralink and Mediatek, and did not see the vulnerability manifest itself. Obviously, we have not tested every possible Wi-Fi chip by every manufacturer, so while we are not aware of other affected chips, we also cannot rule this out. [...]
  2. ASRock DeskMini 310 Series (asrock.com) [...] ASRock M.2 Wi-Fi Kit includes Intel® AC-3168 M.2 Wi-Fi module and two antennas; offering wireless connectivity for DeskMini 310 series. [...]
  3. Intel Dualband-Wireless-AC 7260 (ark.intel.com)


Foto Thomas Niedermeier.jpg

Author: Thomas Niedermeier

Thomas Niedermeier working in the product management team at Thomas-Krenn, completed his bachelor's degree in business informatics at the Deggendorf University of Applied Sciences. Since 2013 Thomas is employed at Thomas-Krenn and takes care of OPNsense firewalls, the Thomas-Krenn-Wiki and firmware security updates.


Related articles

Analyze System Freeze
ATP Premium RAM
SATA Link Power Management