Back to search
CVE-2017-9003
Published: Aug 6, 2018
Modified: Aug 5, 2024
PUBLISHED
Description
Multiple memory corruption flaws are present in ArubaOS which could allow an unauthenticated user to crash ArubaOS processes. With sufficient time and effort, it is possible these vulnerabilities could lead to the ability to execute arbitrary code - remote code execution has not yet been confirmed.
| Vendor | Product | Versions |
|---|---|---|
Hewlett Packard Enterprise | ArubaOS | affected all versions prior to 6.3.1.25 -- 6.4 prior to 6.4.4.16 -- 6.5.x prior to 6.5.1.9 -- 6.5.2 -- 6.5.3 prior to 6.5.3.3 -- 6.5.4 prior to 6.5.4.2 -- 8.x prior to 8.1.0.4 FIPS and non-FIPS versions of software are both affected equally. |
References
http://www.arubanetworks.com/assets/alert/ARUBA-PSA-2017-006.txt
x_refsource_CONFIRM
1039580
vdb-entry
x_refsource_SECTRACK
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now