Executive Summary

Summary
Title Cisco Aironet 1800 Series Access Point Denial of Service Vulnerability
Informations
Name cisco-sa-20160113-aironet First vendor Publication 2016-01-13
Vendor Cisco Last vendor Modification 2016-01-13
Severity (Vendor) N/A Revision 1.0

Security-Database Scoring CVSS v3

Cvss vector : N/A
Overall CVSS Score NA
Base Score NA Environmental Score NA
impact SubScore NA Temporal Score NA
Exploitabality Sub Score NA
 
Calculate full CVSS 3.0 Vectors scores

Security-Database Scoring CVSS v2

Cvss vector : (AV:N/AC:L/Au:N/C:N/I:N/A:C)
Cvss Base Score 7.8 Attack Range Network
Cvss Impact Score 6.9 Attack Complexity Low
Cvss Expoit Score 10 Authentication None Required
Calculate full CVSS 2.0 Vectors scores

Detail

A vulnerability in the IP ingress packet handler of Cisco Aironet 1800 Series Access Point devices could allow an unauthenticated, remote attacker to cause a complete denial of service (DoS) condition.

The vulnerability is due to improper input validation of IP packet headers. An attacker could exploit this vulnerability by sending a crafted IP packet to an affected device. An successful exploit could allow the attacker to cause the device to reload unexpectedly.

Cisco has released software updates that address this vulnerability. There are no workarounds that mitigate this vulnerability.

This advisory is available at the following link:

http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160113-aironet BEGIN PGP SIGNATURE Version: GnuPG v1.4.5 (SunOS)

iQIVAwUBVosVKYpI1I6i1Mx3AQLKrBAAwa5s+vBxe9L2Pf4SnfY8PGQWAJmbVf+p V21gGG5NX5A9F9L6SVhRSyyRYAJjtvuY5H0hxkL9HCN6UT+31vI+unQdUinDXWZL HbV4siEiwFA0XhdY+i5O8GE7jxdZjXROH5m9z4n0v2s4e2YDSUGYcb3UmtmXuWgn iirpBBpWIM8cEELZ6YXhPGpG6xKCDyrYOndj7jN5orJNpBvnSKe82vYBYqiljL4d A4iiMTfqAybFnf9V4sha7/vXFnCqihpAm7Hy1RiVdlIRclhqEsFPMkmPTdJ+3rkV 5VPmGJmNQQBFtm4bOstSETCAIeu/NFd+xCo2/pOvPHctUEv3b+qDplyeXK7EmZ4I 9L58U8j+7mc9LDzyx4naOzmFh1N0PIeSsgFXL7BXby+UyBmHeaNOdTc0gzwb5Nqn CTgA93jmgcs9EEXe6wFLMZ0Hd8EGMUcCTELIh4Vt71TdKo4hCvaablyCpNIuDb6m aA+V1/Vg1SpOndjuj1r2YAHNoXo3dNNj1TBYEl8MosRGOSJNMUdjjsghyKNbFCCJ 980xcN9R70LEMhhiJszfKXEPa/yknlIN12FN2eT84inGW19R/hRyMCPv8FQfeTwk aTWI4M0Qo+hQTwCiFCJpOgN7VTvd5D1K9f/bQrW9+5zXVz73OM0gaRK/lZHpd4za RNHmaSb075s= =lY3/ END PGP SIGNATURE _______________________________________________ cust-security-announce mailing list cust-security-announce@cisco.com To unsubscribe, send the command "unsubscribe" in the subject of your message to cust-security-announce-leave@cisco.com

Original Source

Url : http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco (...)

CWE : Common Weakness Enumeration

% Id Name
100 % CWE-399 Resource Management Errors

CPE : Common Platform Enumeration

TypeDescriptionCount
Os 2

Alert History

If you want to see full details history, please login or register.
0
1
2
3
4
5
6
7
8
9
10
11
12
Date Informations
2016-02-11 08:49:05
  • Multiple Updates
2016-02-11 05:29:00
  • Multiple Updates
2016-02-11 00:29:19
  • Multiple Updates
2016-02-10 21:29:24
  • Multiple Updates
2016-02-10 17:29:05
  • Multiple Updates
2016-02-10 13:27:58
  • Multiple Updates
2016-02-10 09:29:01
  • Multiple Updates
2016-02-10 05:29:15
  • Multiple Updates
2016-02-10 00:29:16
  • Multiple Updates
2016-02-09 21:30:16
  • Multiple Updates
2016-02-09 17:30:24
  • Multiple Updates
2016-02-09 13:31:22
  • Multiple Updates
2016-01-13 21:23:53
  • First insertion