It is unclear to me why a AP would need to be patched.
Perhaps someone can explain what exactly you would "patch" on the AP.
I've read the attack and I realize the author knows the vulnerability better than I do, but I couldn't see a way it could be used against an AP.
Yes this is in agreement with the statement below from TP-Link:
WPA2 Security (KRACKs) Vulnerability Statement
Description
TP-Link is aware of vulnerabilities in the WPA2 security protocol that affect some TP-Link products. An attacker within wireless range of a Wi-Fi network can exploit these vulnerabilities using key reinstallation attacks (KRACKs). According to the research paper on KRACKs by Mathy Vanhoef that brought this vulnerability to the attention of vendors, the attack targets the WPA2 handshake and does not exploit access points, but instead targets clients. All vulnerabilities can be fixed through software updates since the issues are related to implementation flaws.
TP-Link has been working to solve this problem and will continue to post software updates at:
www.tp-link.com/support.html. Products with TP-Link Cloud enabled will receive update notifications in the web management interface, Tether App or Deco App automatically.
More information about KRACK can be found through the link:
https://www.krackattacks.com.
Conditions under which devices are vulnerable:
•Physical proximity: An attack can only happen when an attacker is in physical proximity to and within wireless range of your network.
•Time window: An attack can only happen when a client is connecting or reconnecting to a Wi-Fi network.
Unaffected TP-Link products:
All powerline adapters
All mobile Wi-Fi products
Routers and gateways working in their default mode (Router Mode) and AP Mode
Range extenders working in AP Mode
Business Wi-Fi EAP series access points working on AP mode
Affected TP-Link products:
Routers working in Repeater Mode/WISP Mode/Client Mode:
See:
http://www.tp-link.com/en/faq-1970.html