PT-2017-12452 · Cisco · Cisco Wireless Lan Controllers+1

Published

2017-11-01

·

Updated

2019-10-09

·

CVE-2017-12278

CVSS v2.0

5.2

Medium

VectorAV:A/AC:M/Au:S/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Cisco Wireless LAN Controllers (affected versions not specified)
Description A memory leak in the Simple Network Management Protocol (SNMP) subsystem could allow an authenticated, remote attacker to cause an affected device to restart, resulting in a denial of service (DoS) condition. This occurs when an attacker repeatedly polls certain MIB object IDs (OIDs) using the SNMP Version 2 SNMP Read string or valid SNMP Version 3 credentials, consuming available memory on the device.
Recommendations For all affected versions, update to the latest software version that addresses this issue, as released by Cisco. At the moment, there is no information about specific versions that contain a fix for this vulnerability.

Fix

DoS

Buffer Overflow

Missing Release of Resource after Effective Lifetime

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2017-12278

Affected Products

Cisco Wireless Lan Controllers
Cisco Wls