[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2015-4146":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-04T14:53:31.930Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":18,"aliases":19,"duplicate_of":9,"upstream":20,"downstream":21,"duplicates":32,"related":33,"reserved_at":9,"published_at":35,"modified_at":36,"state":37,"summary":38,"references_raw":47,"kevs":90,"epss":91,"epss_history":94,"metrics":347,"affected":352},"CVE-2015-4146","The EAP-pwd peer implementation in hostapd and wpa_supplicant 1.0 through 2.4 does not clear the L (Length) and M (More) flags before determining if a response should be fragmented, which allows remote attackers to cause a denial of service (crash) via a crafted message.",null,[11],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":9,"likelihood_of_exploit":9,"capec":17},"NVD-CWE-NOINFO","Insufficient Information","NVD uses this CWE ID when there is insufficient information to assign a specific CWE.","placeholder","NVD-Reserved",[],[],[],[],[22,24,26,28,30],{"_key":23},"UBUNTU-CVE-2015-4146",{"_key":25},"USN-2650-1",{"_key":27},"OPENSUSE-SU-2024:10499-1",{"_key":29},"DSA-3397-1",{"_key":31},"DEBIAN-CVE-2015-4146",[],[34],{"_key":27},"2015-06-15T15:00:00.000Z","2024-08-06T06:04:02.892Z","Modified",{"cisa_kev":39,"cisa_ransomware":39,"cisa_vendor":9,"epss_severity":40,"epss_score":41,"severity":42,"severity_score":43,"severity_version":44,"severity_source":45,"severity_vector":46,"severity_status":37},false,"low",0.01312,"medium",5,"v2.0","nvd","AV:N/AC:L/Au:N/C:N/I:N/A:P",[48,55,60,66,72,77,81,86],{"url":49,"sources":50,"tags":52},"http://www.openwall.com/lists/oss-security/2015/05/31/6",[51,45],"cve.org",[53,54],"Mailing List","X Refsource MLIST",{"url":56,"sources":57,"tags":58},"http://w1.fi/security/2015-4/0005-EAP-pwd-peer-Fix-asymmetric-fragmentation-behavior.patch",[51,45],[59],"X Refsource CONFIRM",{"url":61,"sources":62,"tags":63},"http://www.debian.org/security/2015/dsa-3397",[51,45],[64,65],"Vendor Advisory","X Refsource DEBIAN",{"url":67,"sources":68,"tags":69},"https://security.gentoo.org/glsa/201606-17",[51,45],[64,70,71],"X Refsource GENTOO","Third Party Advisory",{"url":73,"sources":74,"tags":75},"http://www.ubuntu.com/usn/USN-2650-1",[51,45],[64,76],"X Refsource UBUNTU",{"url":78,"sources":79,"tags":80},"http://w1.fi/security/2015-4/eap-pwd-missing-payload-length-validation.txt",[51,45],[59,64],{"url":82,"sources":83,"tags":84},"http://lists.opensuse.org/opensuse-updates/2015-06/msg00019.html",[51,45],[64,85,71],"X Refsource SUSE",{"url":87,"sources":88,"tags":89},"http://www.openwall.com/lists/oss-security/2015/05/09/6",[51,45],[53,54],[],{"date":92,"score":41,"percentile":93},"2026-06-04",0.80156,[95,98,101,104,107,110,112,114,116,119,122,125,127,130,133,136,139,142,145,148,151,154,157,160,163,166,169,171,174,177,180,183,185,187,190,193,196,199,202,205,207,209,212,214,217,220,223,226,229,231,233,236,239,242,245,248,251,254,257,260,263,266,268,271,274,276,279,282,285,288,290,293,295,297,300,303,306,309,312,315,318,321,324,327,330,333,336,339,341,344],{"date":96,"score":41,"percentile":97},"2025-11-04",0.79153,{"date":99,"score":41,"percentile":100},"2025-11-05",0.79151,{"date":102,"score":41,"percentile":103},"2025-11-06",0.79148,{"date":105,"score":41,"percentile":106},"2025-11-07",0.79162,{"date":108,"score":41,"percentile":109},"2025-11-08",0.79169,{"date":111,"score":41,"percentile":106},"2025-11-09",{"date":113,"score":41,"percentile":100},"2025-11-10",{"date":115,"score":41,"percentile":97},"2025-11-11",{"date":117,"score":41,"percentile":118},"2025-11-12",0.7917,{"date":120,"score":41,"percentile":121},"2025-11-13",0.7918,{"date":123,"score":41,"percentile":124},"2025-11-14",0.79187,{"date":126,"score":41,"percentile":124},"2025-11-15",{"date":128,"score":41,"percentile":129},"2025-11-16",0.79189,{"date":131,"score":41,"percentile":132},"2025-11-17",0.79184,{"date":134,"score":41,"percentile":135},"2025-11-18",0.78086,{"date":137,"score":41,"percentile":138},"2025-11-19",0.78094,{"date":140,"score":41,"percentile":141},"2025-11-20",0.78103,{"date":143,"score":41,"percentile":144},"2025-11-21",0.79209,{"date":146,"score":41,"percentile":147},"2025-11-22",0.79211,{"date":149,"score":41,"percentile":150},"2025-11-23",0.79199,{"date":152,"score":41,"percentile":153},"2025-11-24",0.79197,{"date":155,"score":41,"percentile":156},"2025-11-25",0.792,{"date":158,"score":41,"percentile":159},"2025-11-26",0.79202,{"date":161,"score":41,"percentile":162},"2025-11-27",0.79204,{"date":164,"score":41,"percentile":165},"2025-11-28",0.79196,{"date":167,"score":41,"percentile":168},"2025-11-29",0.79203,{"date":170,"score":41,"percentile":159},"2025-11-30",{"date":172,"score":41,"percentile":173},"2025-12-01",0.79299,{"date":175,"score":41,"percentile":176},"2025-12-02",0.79301,{"date":178,"score":41,"percentile":179},"2025-12-03",0.79302,{"date":181,"score":41,"percentile":182},"2025-12-04",0.79206,{"date":184,"score":41,"percentile":144},"2025-12-05",{"date":186,"score":41,"percentile":147},"2025-12-06",{"date":188,"score":41,"percentile":189},"2025-12-07",0.79212,{"date":191,"score":41,"percentile":192},"2025-12-08",0.79216,{"date":194,"score":41,"percentile":195},"2025-12-09",0.79233,{"date":197,"score":41,"percentile":198},"2025-12-10",0.79255,{"date":200,"score":41,"percentile":201},"2025-12-11",0.7927,{"date":203,"score":41,"percentile":204},"2025-12-12",0.79289,{"date":206,"score":41,"percentile":204},"2025-12-13",{"date":208,"score":41,"percentile":204},"2025-12-14",{"date":210,"score":41,"percentile":211},"2025-12-15",0.7929,{"date":213,"score":41,"percentile":173},"2025-12-16",{"date":215,"score":41,"percentile":216},"2025-12-17",0.79308,{"date":218,"score":41,"percentile":219},"2025-12-18",0.79327,{"date":221,"score":41,"percentile":222},"2025-12-19",0.79338,{"date":224,"score":41,"percentile":225},"2025-12-20",0.79334,{"date":227,"score":41,"percentile":228},"2025-12-21",0.79326,{"date":230,"score":41,"percentile":219},"2025-12-22",{"date":232,"score":41,"percentile":228},"2025-12-23",{"date":234,"score":41,"percentile":235},"2025-12-24",0.79341,{"date":237,"score":41,"percentile":238},"2025-12-25",0.79361,{"date":240,"score":41,"percentile":241},"2025-12-26",0.79359,{"date":243,"score":41,"percentile":244},"2025-12-27",0.79409,{"date":246,"score":41,"percentile":247},"2025-12-28",0.79348,{"date":249,"score":41,"percentile":250},"2025-12-29",0.79343,{"date":252,"score":41,"percentile":253},"2025-12-30",0.7935,{"date":255,"score":41,"percentile":256},"2025-12-31",0.79367,{"date":258,"score":41,"percentile":259},"2026-01-01",0.79461,{"date":261,"score":41,"percentile":262},"2026-01-02",0.7946,{"date":264,"score":41,"percentile":265},"2026-01-03",0.79457,{"date":267,"score":41,"percentile":241},"2026-01-04",{"date":269,"score":41,"percentile":270},"2026-01-05",0.79355,{"date":272,"score":41,"percentile":273},"2026-01-06",0.7936,{"date":275,"score":41,"percentile":256},"2026-01-07",{"date":277,"score":41,"percentile":278},"2026-01-08",0.79377,{"date":280,"score":41,"percentile":281},"2026-01-09",0.79379,{"date":283,"score":41,"percentile":284},"2026-01-10",0.7938,{"date":286,"score":41,"percentile":287},"2026-01-11",0.79373,{"date":289,"score":41,"percentile":241},"2026-01-12",{"date":291,"score":41,"percentile":292},"2026-01-13",0.79356,{"date":294,"score":41,"percentile":278},"2026-01-14",{"date":296,"score":41,"percentile":281},"2026-01-15",{"date":298,"score":41,"percentile":299},"2026-01-16",0.79385,{"date":301,"score":41,"percentile":302},"2026-01-17",0.79395,{"date":304,"score":41,"percentile":305},"2026-01-18",0.79391,{"date":307,"score":41,"percentile":308},"2026-01-19",0.79383,{"date":310,"score":41,"percentile":311},"2026-01-20",0.79384,{"date":313,"score":41,"percentile":314},"2026-01-21",0.7939,{"date":316,"score":41,"percentile":317},"2026-01-22",0.79401,{"date":319,"score":41,"percentile":320},"2026-01-23",0.79429,{"date":322,"score":41,"percentile":323},"2026-01-24",0.79439,{"date":325,"score":41,"percentile":326},"2026-01-25",0.7943,{"date":328,"score":41,"percentile":329},"2026-01-26",0.79428,{"date":331,"score":41,"percentile":332},"2026-01-27",0.79426,{"date":334,"score":41,"percentile":335},"2026-01-28",0.79425,{"date":337,"score":41,"percentile":338},"2026-01-29",0.79423,{"date":340,"score":41,"percentile":335},"2026-01-30",{"date":342,"score":41,"percentile":343},"2026-01-31",0.79431,{"date":345,"score":41,"percentile":346},"2026-02-01",0.79526,[348],{"source":45,"cvss_v2_0":349,"cvss_v3_0":9,"cvss_v3_1":9,"cvss_v4_0":9},{"baseScore":43,"baseSeverity":9,"vectorString":46,"impactScore":350,"exploitabilityScore":351},2.9,10,[353,362,381],{"ecosystem":9,"name":354,"vendor":354,"product":354,"cpe_part":355,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":356},"opensuse","o",[357,360],{"version":358,"is_range":39,"range_type":359,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"13.1","cpe",{"version":361,"is_range":39,"range_type":359,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"13.2",{"ecosystem":9,"name":363,"vendor":364,"product":363,"cpe_part":365,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":366},"hostapd","w1.fi","a",[367,369,371,373,375,377,379],{"version":368,"is_range":39,"range_type":359,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.0",{"version":370,"is_range":39,"range_type":359,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.1",{"version":372,"is_range":39,"range_type":359,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"2.0",{"version":374,"is_range":39,"range_type":359,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"2.1",{"version":376,"is_range":39,"range_type":359,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"2.2",{"version":378,"is_range":39,"range_type":359,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"2.3",{"version":380,"is_range":39,"range_type":359,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"2.4",{"ecosystem":9,"name":382,"vendor":364,"product":383,"cpe_part":365,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":384},"wpa supplicant","wpa_supplicant",[385,386,387,388,389,390,391],{"version":368,"is_range":39,"range_type":359,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},{"version":370,"is_range":39,"range_type":359,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},{"version":372,"is_range":39,"range_type":359,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},{"version":374,"is_range":39,"range_type":359,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},{"version":376,"is_range":39,"range_type":359,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},{"version":378,"is_range":39,"range_type":359,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},{"version":380,"is_range":39,"range_type":359,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9}]