UBUNTU-CVE-2021-46873

Source
https://ubuntu.com/security/CVE-2021-46873
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2021/UBUNTU-CVE-2021-46873.json
JSON Data
https://api.osv.dev/v1/vulns/UBUNTU-CVE-2021-46873
Related
Published
2023-01-29T23:15:00Z
Modified
2025-06-03T17:36:05Z
Severity
  • 5.3 (Medium) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L CVSS Calculator
  • 5.3 (Medium) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L CVSS Calculator
Summary
[none]
Details

WireGuard, such as WireGuard 0.5.3 on Windows, does not fully account for the possibility that an adversary might be able to set a victim's system time to a future value, e.g., because unauthenticated NTP is used. This can lead to an outcome in which one static private key becomes permanently useless.

References

Affected packages

Ubuntu:Pro:16.04:LTS / wireguard

Package

Name
wireguard
Purl
pkg:deb/ubuntu/wireguard@1.0.20200513-1~16.04.2?arch=source&distro=esm-apps/xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1.*

1.0.20200513-1~16.04.1
1.0.20200513-1~16.04.2

Ecosystem specific

{
    "ubuntu_priority": "low"
}

Ubuntu:Pro:18.04:LTS / wireguard

Package

Name
wireguard
Purl
pkg:deb/ubuntu/wireguard@1.0.20200513-1~18.04.2?arch=source&distro=esm-apps/bionic

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1.*

1.0.20200513-1~18.04.1
1.0.20200513-1~18.04.2

Ecosystem specific

{
    "ubuntu_priority": "low"
}

Ubuntu:Pro:20.04:LTS / wireguard

Package

Name
wireguard
Purl
pkg:deb/ubuntu/wireguard@1.0.20200513-1~20.04.2?arch=source&distro=esm-apps/focal

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

0.*

0.0.20190913-1ubuntu1
0.0.20191212-1ubuntu1
0.0.20191219-1ubuntu1

1.*

1.0.20200102-1ubuntu1
1.0.20200121-1ubuntu1
1.0.20200121-2ubuntu1
1.0.20200206-1ubuntu1
1.0.20200206-2ubuntu1
1.0.20200319-1ubuntu1
1.0.20200513-1~20.04.1
1.0.20200513-1~20.04.2

Ecosystem specific

{
    "ubuntu_priority": "low"
}

Ubuntu:22.04:LTS / wireguard

Package

Name
wireguard
Purl
pkg:deb/ubuntu/wireguard@1.0.20210914-1ubuntu2?arch=source&distro=jammy

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1.*

1.0.20210424-1ubuntu1
1.0.20210914-1ubuntu1
1.0.20210914-1ubuntu2

Ecosystem specific

{
    "ubuntu_priority": "low"
}

Ubuntu:24.10 / wireguard

Package

Name
wireguard
Purl
pkg:deb/ubuntu/wireguard@1.0.20210914-1.1ubuntu1?arch=source&distro=oracular

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1.*

1.0.20210914-1ubuntu4
1.0.20210914-1.1ubuntu1

Ecosystem specific

{
    "ubuntu_priority": "low"
}

Ubuntu:24.04:LTS / wireguard

Package

Name
wireguard
Purl
pkg:deb/ubuntu/wireguard@1.0.20210914-1ubuntu4?arch=source&distro=noble

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1.*

1.0.20210914-1ubuntu3
1.0.20210914-1ubuntu4

Ecosystem specific

{
    "ubuntu_priority": "low"
}

Ubuntu:25.04 / wireguard

Package

Name
wireguard
Purl
pkg:deb/ubuntu/wireguard@1.0.20210914-1.1ubuntu2?arch=source&distro=plucky

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1.*

1.0.20210914-1.1ubuntu1
1.0.20210914-1.1ubuntu2

Ecosystem specific

{
    "ubuntu_priority": "low"
}