Whatever the root cause may be, the easiest way to protect against this exploit right now is to turn WPS off -- not a big problem if you're comfortable with a router setup page, but probably more of a ...