CVE-2020-3702
Linux Kernel vulnerability analysis and mitigation

Overview

CVE-2020-3702 is a vulnerability discovered in the Atheros IEEE 802.11n family of chipsets (ath9k) that affects WLAN devices. The vulnerability allows specifically timed and handcrafted traffic to cause internal errors that lead to improper layer 2 Wi-Fi encryption, potentially resulting in information disclosure over the air for a discrete set of traffic. This vulnerability affects various Snapdragon platforms including Auto, Compute, Connectivity, Consumer IOT, Industrial IOT, Mobile, Voice & Music, Wearables, and Wired Infrastructure and Networking components (NVD).

Technical details

The vulnerability has a CVSS v3.1 Base Score of 6.5 (MEDIUM) with a vector of CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N. The issue specifically affects WPA2 or WPA/WPA2 mixed-mode encryption standards when traffic is bridged using the 2.4GHz radio of affected Access Points. Under certain conditions, APs may temporarily transmit Wi-Fi traffic without encryption, though traffic encrypted at higher layers (e.g., TLS) remains secure (Arista Advisory).

Impact

The vulnerability can lead to information disclosure over the air for specific traffic patterns. When exploited, it allows attackers to potentially intercept unencrypted wireless network traffic, though any traffic that is encrypted at higher layers by edge devices remains protected (Arista Advisory).

Exploitability

The vulnerability requires specific conditions to be exploitable: the AP must be using WPA2 or WPA/WPA2 mixed-mode security standards, the Wi-Fi traffic must be bridged using the 2.4GHz radio, and the Access Point model must be among the affected platforms. The attack requires network adjacency but no special privileges or user interaction (Arista Advisory).

Mitigation and workarounds

Several mitigation options are available: 1) Disable the 2.4GHz band of the SSID(s) on affected Access Points, though this will affect single-band devices that operate only in the 2.4GHz band. 2) Implement encryption at the application layer (e.g., TLS) for edge devices. 3) Upgrade to remediated software versions including AP Build versions 8.8.1-116-vv5, 8.8.2-49-vv4, or 8.8.3-12-vv3 (Arista Advisory, Debian Advisory).

Additional resources


SourceThis report was generated using AI

Related Linux Kernel vulnerabilities:

CVE ID

Severity

Score

Technologies

Component name

CISA KEV exploit

Has fix

Published date

CVE-2026-74583NONEN/A
  • Linux Kernel logoLinux Kernel
  • kernel-debug
NoYesAug 21, 2026
CVE-2026-74582NONEN/A
  • Linux Kernel logoLinux Kernel
  • kernel.src
NoYesAug 21, 2026
CVE-2026-74581NONEN/A
  • Linux Kernel logoLinux Kernel
  • kernel-64k-modules-internal
NoYesAug 21, 2026
CVE-2026-74580NONEN/A
  • Linux Kernel logoLinux Kernel
  • kernel-debug
NoYesAug 21, 2026
CVE-2025-30156NONEN/A
  • Linux Kernel logoLinux Kernel
  • kernel-debug-devel-matched
NoYesAug 21, 2026

Free Vulnerability Assessment

Benchmark your Cloud Security Posture

Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.

Request assessment

Get a personalized demo

Ready to see Wiz in action?

"Best User Experience I have ever seen, provides full visibility to cloud workloads."
David EstlickCISO
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
Adam FletcherChief Security Officer
"We know that if Wiz identifies something as critical, it actually is."
Greg PoniatowskiHead of Threat and Vulnerability Management