CVE Wiki Pixee · CVE intelligence
← All CVEs

CVE-2022-23304

Critical · CVSS 9.8

hostapd / wpa_supplicant — EAP-pwd side-channel attack via cache access patterns (CWE-203 Observable Timing Discrepancy)

CVSS
9.8
nvd
EPSS
1.90%
77th pct
KEV
No
Class
oss containerizable
CWE-203

Description

The implementations of EAP-pwd in hostapd before 2.10 and wpa_supplicant before 2.10 are vulnerable to side-channel attacks as a result of cache access patterns. NOTE: this issue exists because of an incomplete fix for CVE-2019-9495.

Search profile — drives PoC discovery

Symbols eap_pwdEAP-pwdeap_pwd_processcrypto_ec_point_muleap_pwd_perform_commit_exchangehunting_and_peckingdragonflyCVE-2019-9495eap_pwd_build_commit_reqeap_pwd_key_setup
Keywords CVE-2022-23304hostapd EAP-pwd side-channelwpa_supplicant EAP-pwd cache timingEAP-pwd cache access pattern attackhostapd before 2.10 side-channelwpa_supplicant before 2.10 side-channelCVE-2019-9495 incomplete fixdragonfly handshake cache side-channelEAP-pwd PoC exploit
Versions: hostapd < 2.10, wpa_supplicant < 2.10

Ranked PoCs (1) — best first

Heuristic ranking — not yet expert-vetted. Scored on structure + provenance, not execution.

Recall-favoring discovery; ranking by the Stage-4 scorer (Adam's rubric). Scanner/aggregator repos are hidden.

References

Status: enriched · ingested 2026-07-14T18:00:20.000Z · profiled 2026-07-14T18:30:20.000Z