Menu

Database

TKIP Replay and Plaintext Discovery

WVE ID: WVE-2008-0013

Type: Vulnerability

Status: Candidate

Classification:
Cryptographic
Hijacking
Information Disclosure
Infrastructure
Design Flaw

Description:
TKIP is vulnerable to replay (via WMM/QoS) and plaintext discovery (via ChopChop). This affects all WPA-TKIP usage.

Discussion:
By replaying a captured TKIP data frame on other QoS queues an attacker can manipulate the RC4 data and checksum to derive the plaintext at a rate of one byte per minute.

By targeting an ARP frame and guessing the known payload, an attacker can extract the complete plaintext and MIC checksum.

With the extracted MIC checksum, an attacker can reverse the MIC AP to Station key and sign future messages as MIC compliant, opening the door for more advanced attacks.

Credits
Author: Erik Trews (e_tews@cdc.informatik.tu-darmstadt.de) : TU-Darmstadt
Author: Martin Beck (hirte@aircrack-ng.org) : TU-Dresden

References
URL: https://www.sans.org/webcasts/show.php?webcastid=92188
URL: http://dl.aircrack-ng.org/breakingwepandwpa.pdf
URL: http://arstechnica.com/articles/paedia/wpa-cracked.ars/1

Released: 2008-11-18

Submitter
Mike Kershaw (dragorn@kismetwireless.net) : Aruba Networks

Submitted: Tue Nov 18 08:46:56 -0800 2008

Candidate Date: Tue Nov 18 08:50:50 -0800 2008


Recent Entries

TKIP Replay and Plaintext Discovery
WVE-2008-0013 11/18/2008

Active Https Cookie Hijacking
WVE-2008-0012 9/18/2008

Auto Immune Attack
WVE-2008-0011 9/17/2008

Marvell Null SSID Association Request
WVE-2008-0010 9/15/2008

Marvell EAPOL-Key Length Overflow
WVE-2008-0009 9/15/2008

Atheros IE Tag Overflow
WVE-2008-0008 9/15/2008

Weaknesses in the A5/1 Cipher
WVE-2008-0007 4/9/2008

Block ACK DoS
WVE-2008-0006 4/9/2008

GF Mode WIDS Rogue AP Evasion
WVE-2008-0005 4/9/2008

HT Intolerant Degradation of Service
WVE-2008-0004 4/9/2008

More Entries...

News

SANS Institute Sponsors WVE
4/19/2008

Wireless Attackers and Honeypot Technology
4/15/2008

High Speed Risks in 802.11n Slides Posted
4/11/2008

Vulnerabilities in 802.11n
4/9/2008

WVE Editors Speaking at SHARKFEST.08
1/3/2008

More News...