CVE Wiki Pixee · CVE intelligence
← All CVEs

CVE-2022-23303

Critical · CVSS 9.8

hostapd / wpa_supplicant — SAE side-channel attack via cache access patterns (CWE-203 Observable Discrepancy)

CVSS
9.8
nvd
EPSS
2.94%
86th pct
KEV
No
Class
oss containerizable
CWE-203

Description

The implementations of SAE in hostapd before 2.10 and wpa_supplicant before 2.10 are vulnerable to side channel attacks as a result of cache access patterns. NOTE: this issue exists because of an incomplete fix for CVE-2019-9494.

Search profile — drives PoC discovery

Symbols SAEsae_confirmsae_commitdragonflysae_parse_commitsae_process_commitsae_derive_pwe_eccsae_derive_pwe_ffccache access patternsCVE-2019-9494hostapdwpa_supplicant
Keywords CVE-2022-23303hostapd SAE side channelwpa_supplicant SAE cache timingdragonfly handshake side channelSAE cache access patterns PoCwpa_supplicant before 2.10 SAEhostapd before 2.10 SAECVE-2019-9494 incomplete fixSAE CWE-203 exploit
Versions: hostapd < 2.10, wpa_supplicant < 2.10

Ranked PoCs (3) — best first

Heuristic ranking — not yet expert-vetted. Scored on structure + provenance, not execution.

Recall-favoring discovery; ranking by the Stage-4 scorer (Adam's rubric). Scanner/aggregator repos are hidden.

References

Status: enriched · ingested 2026-07-14T18:00:20.000Z · profiled 2026-07-14T18:30:20.000Z