It was found that the fixes for CVE-2015-7979 and CVE-2016-1547 were incomplete: An attacker can send a spoofed packet that contains an invalid MAC to a client/peer and demobilize its ephemeral association. http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2016-4953