Description
Aruba Mobility Controller 2.4.8.x-FIPS, 2.5.x, 3.1.x, 3.2.x, 3.3.1.x, and 3.3.2.x allows remote attackers to cause a denial of service (device crash) via a malformed Extensible Authentication Protocol (EAP) frame.
Affected products
- aruba_networks / aruba_mobility_controller2.4.8 – 2.4.8
- aruba_networks / aruba_mobility_controller2.4.8.5 – 2.4.8.5
- aruba_networks / aruba_mobility_controller2.4.8.6 – 2.4.8.6
- aruba_networks / aruba_mobility_controller2.4.8.11 – 2.4.8.11
- aruba_networks / aruba_mobility_controller2.5.2.11 – 2.5.2.11
- aruba_networks / aruba_mobility_controller2.5.4.17 – 2.5.4.17
- aruba_networks / aruba_mobility_controller2.5.4.18 – 2.5.4.18
- aruba_networks / aruba_mobility_controller2.5.4.25 – 2.5.4.25
- aruba_networks / aruba_mobility_controller2.5.5 – 2.5.5
- aruba_networks / aruba_mobility_controller2.5.5.7 – 2.5.5.7
- aruba_networks / aruba_mobility_controller2.5.6 – 2.5.6
- aruba_networks / aruba_mobility_controller3.1.1 – 3.1.1
- aruba_networks / aruba_mobility_controllers3.1.1.3 – 3.1.1.3
- arubanetworks / aruba_mobility_controller3.1.1.0 – 3.1.1.0
- arubanetworks / aruba_mobility_controller3.1.1.3 – 3.1.1.3
- arubanetworks / aruba_mobility_controller3.2.0.0 – 3.2.0.0
- arubanetworks / aruba_mobility_controller3.3.1.0 – 3.3.1.0
- arubanetworks / aruba_mobility_controller3.3.1.6 – 3.3.1.6
References
- MISChttp://securityreason.com/securityalert/4728
- MISChttp://www.securityfocus.com/bid/32694
- MISChttp://www.arubanetworks.com/support/alerts/aid-12808.asc
- MISChttp://www.securitytracker.com/id?1021362
- VENDOR_ADVISORYhttp://secunia.com/advisories/33057
- MISChttp://www.securityfocus.com/archive/1/499014/100/0/threaded