This page addresses the following FragAttacks‑related vulnerabilities identified by Common Vulnerabilities and Exposures (CVEs):
CVE-2020-26139: Forwarding Extensible Authentication Protocol over LAN (EAPOL) frames even though the sender is not yet authenticated (should only affect access points (APs))
CVE-2020-26140: Accepting plaintext data frames in a protected network
CVE-2020-26141: Not verifying the Temporal Key Integrity Protocol Message Integrity Check (TKIP MIC) of fragmented frames
CVE-2020-26142: Processing fragmented frames as full frames
CVE-2020-26143: Accepting fragmented plaintext data frames in a protected network
CVE-2020-26144: Accepting plaintext Aggregated MAC Service Data Unit (A-MSDU) frames that start with an RFC1042 header with EtherType EAPOL in an encrypted network
CVE-2020-26145: Accepting plaintext broadcast fragments as full frames in an encrypted network
CVE-2020-26146: Reassembling encrypted fragments with non-consecutive packet numbers
CVE-2020-26147: Reassembling mixed encrypted/plaintext fragments
CVE-2020-24586: Fragment cache attack (not clearing fragments from memory when (re)connecting to a network)
CVE-2020-24587: Mixed key attack (reassembling fragments encrypted under different keys)
CVE-2020-24588: Aggregation attack (accepting Non-Secure Packet Processing (non-SPP) A-MSDU frames)
Note: Not all FragAttacks CVEs apply to every device type. Applicability depends on supported Wi-Fi features and implementation details. Refer to the table below for detailed mapping of vulnerabilities to specific software and associated hardware.
Last Updated: June 30, 2026
Only products listed in the Affected Products and Resolution section of this advisory are known to be affected by these vulnerabilities.
Reference documentation includes the following third-party research materials:
Official FragAttacks Website
Live Chat