Former Fedora Project lead Paul W. Frields talks about how to protect Fedora from the WPA2 KRACK that affects almost any device that uses the security protocol to connect to the internet.
The WPA2 bugs were revealed by security researcher Mathy Vanhoef, who demonstrated in a video how the GNU/Linux and Android operating systems are vulnerable to the Key Reinstallation Attack, or KRACK, allowing hackers to obtain sensitive information such as credit card numbers, passwords, and usernames.
On Linux, the bug exists in the wpa_supplicant package which has already been patched in Debian, Ubuntu, Linux Mint, elementary OS, Arch Linux, Solus and many other popular GNU/ Linux. It is coming to the stable Fedora Linux repositories very soon, so you should update your systems as soon as possible.
Recall that KRACK is a vulnerability in WPA2 and allows attackers to decrypt, forge, and steal data despite WPA2's improved encryption capabilities.
If you want to protect your Wi-Fi network from WPA2 KRACK when using Fedora Linux, you need to run the command “sudo dnf update wpa_supplicant” in a terminal emulator. Fedora 25, Fedora 26, and the upcoming Fedora 27 are affected by the WPA2 bug.
However, if the wpa_supplicant update has not yet reached the stable repositories of your Fedora Linux operating system, you can manually install the latest version using the commands listed below. Make sure to replace wpa_supplicant-2.6-11.fc26 with wpa_supplicant-2.6-3.fc25.1 or wpa_supplicant-2.6-11.fc27 if you are using Fedora 25 or 27 Beta.
udo dnf install bodhi-client
mkdir ~/krack-update && cd ~/krack-update
bodhi updates download wpa_supplicant-2.6-11.fc26
dnf update ./wpa_supplicant*.rpm
