Vulnerability Description
Lucent/ORiNOCO WaveLAN cards generate predictable Initialization Vector (IV) values for the Wireless Encryption Protocol (WEP) which allows remote attackers to quickly compile information that will let them decrypt messages.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Lucent | Wavelan | All versions |
| Orinoco | Orinoco Wavelan | All versions |
References
- http://www.cs.jhu.edu/~seny/pubs/wince802.pdfExploitVendor Advisory
- http://www.cs.jhu.edu/~seny/pubs/wince802.pdfExploitVendor Advisory
FAQ
What is CVE-2001-0160?
CVE-2001-0160 is a vulnerability with a CVSS score of 5.0 (MEDIUM). Lucent/ORiNOCO WaveLAN cards generate predictable Initialization Vector (IV) values for the Wireless Encryption Protocol (WEP) which allows remote attackers to quickly compile information that will le...
How severe is CVE-2001-0160?
CVE-2001-0160 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2001-0160?
Check the references section above for vendor advisories and patch information. Affected products include: Lucent Wavelan, Orinoco Orinoco Wavelan.