.Important note to pay attention to. You'll most likely use eth0 on a USG and eth2 or eth3 on a USG-Pro, edit the files accordingly. Do not run the supplicant on virtual interfaces (e.g. Eth0.0), as it will not work. A security issue was found in hostapd and wpasupplicant version 2.9. A missing length check in the p2pcopyclientinfo function could lead to a buffer overflow. CVE-2018-14526: AVG-752: High: Yes: Information disclosure: An issue was discovered in rsnsupp/wpa.c in wpasupplicant 2.0 through 2.6.
Link
package | bugs open | bugs closed | Wiki | GitHub | web search
Description
A utility providing key negotiation for WPA wireless networks
Version
2:2.9-8 [core]
Open
Group
Affected
Fixed
Severity
Status
Ticket
AVG-1626
2:2.9-8
Medium
Vulnerable
FS#69784
Issue
Group
Severity
Remote
Type
Description
CVE-2021-27803
AVG-1626
Medium
Yes
Arbitrary code execution
Resolved
Group
Affected
Fixed
Severity
Status
Ticket
AVG-1530
2:2.9-7
2:2.9-8
High
Fixed
FS#69525
AVG-752
1:2.6-11
1:2.6-12
High
Fixed
AVG-454
1:2.5-1
1:2.6-1
High
Fixed
AVG-452
1:2.6-10
High
Not affected
AVG-447
1:2.6-10
1:2.6-11
High
Fixed
AVG-11
1:2.5-3
1:2.6-1
High
Fixed
FS#49196
Issue
Group
Severity
Remote
Type
Description
CVE-2021-0326
AVG-1530
High
Yes
Arbitrary code execution
CVE-2018-14526
AVG-752
High
Yes
Information disclosure
CVE-2017-13088
AVG-447
High
Yes
Man-in-the-middle
CVE-2017-13087
AVG-447
High
Yes
Man-in-the-middle
CVE-2017-13086
AVG-454
High
Yes
Man-in-the-middle
CVE-2017-13084
AVG-452
High
Yes
Man-in-the-middle
CVE-2017-13082
AVG-447
High
Yes
Man-in-the-middle
CVE-2017-13081
AVG-447
High
Yes
Man-in-the-middle
CVE-2017-13080
AVG-447
High
Yes
Man-in-the-middle
CVE-2017-13079
AVG-447
High
Yes
Man-in-the-middle
CVE-2017-13078
AVG-447
High
Yes
Man-in-the-middle
CVE-2017-13077
AVG-447
High
Yes
Man-in-the-middle
CVE-2016-4477
AVG-11
High
No
Privilege escalation
CVE-2016-4476
AVG-11
Low
Yes
Denial of service
Advisories
Date
Advisory
Group
Severity
Type
12 Feb 2021
ASA-202102-25
AVG-1530
High
arbitrary code execution
16 Oct 2017
ASA-201710-22
AVG-447
High
man-in-the-middle
08 Oct 2016
ASA-201610-7
AVG-11
High
multiple issues
octopi_wpa_supplicant.txt
# Use this file to configure your wifi connection(s).
#
# Just uncomment the lines prefixed with a single # of the configuration
# that matches your wifi setup and fill in SSID and passphrase.
#
# You can configure multiple wifi connections by adding more 'network'
# blocks.
#
# See https://linux.die.net/man/5/wpa_supplicant.conf