CVE-2025-24912

CVSS 3.0 Score 3.7 of 10 (low)

Details

Published Mar 12, 2025
CWE ID 826

Summary

CVE-2025-24912 is a vulnerability affecting the hostapd software. This issue involves the improper processing of maliciously crafted RADIUS packets. When hostapd is used to authenticate Wi-Fi devices via RADIUS, an attacker positioned between hostapd and the RADIUS server can inject such packets, causing RADIUS authentications to fail, potentially denying access to legitimate users.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share