First published: Thu Feb 05 2009(Updated: )
Unspecified vulnerability in the Wireless LAN Controller (WLC) TSEC driver in the Cisco 4400 WLC, Cisco Catalyst 6500 and 7600 Wireless Services Module (WiSM), and Cisco Catalyst 3750 Integrated Wireless LAN Controller with software 4.x before 4.2.176.0 and 5.x before 5.1 allows remote attackers to cause a denial of service (device crash or hang) via unknown IP packets.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco 4400 Wireless LAN Controller | =4.1 | |
Cisco 4400 Wireless LAN Controller | =4.2 | |
Cisco 4400 Wireless LAN Controller | =5.0 | |
Cisco Catalyst 3750 series Integrated Wireless LAN Controller | =4.1 | |
Cisco Catalyst 3750 series Integrated Wireless LAN Controller | =4.2 | |
Cisco Catalyst 3750 series Integrated Wireless LAN Controller | =5.0 | |
Cisco Catalyst 6500 Series Integrated Wireless LAN Controller | =4.1 | |
Cisco Catalyst 6500 Series Integrated Wireless LAN Controller | =4.2 | |
Cisco Catalyst 6500 Series Integrated Wireless LAN Controller | =5.0 | |
Cisco Catalyst 7600 series Wireless LAN Controller | =4.1 | |
Cisco Catalyst 7600 series Wireless LAN Controller | =4.2 | |
Cisco Catalyst 7600 series Wireless LAN Controller | =5.0 | |
Cisco Wireless LAN Controllers | =4.1 | |
Cisco Wireless LAN Controllers | =4.2 | |
Cisco Wireless LAN Controllers | =5.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-0061 has been classified with a high severity rating due to the potential for remote exploitation.
To resolve CVE-2009-0061, upgrade affected Cisco Wireless LAN Controllers to the patched versions 4.2.176.0 or 5.1 and later.
CVE-2009-0061 affects Cisco 4400 WLC, Catalyst 3750, Catalyst 6500, and Catalyst 7600 series Wireless LAN Controllers running specific versions.
Yes, CVE-2009-0061 allows for remote attacks, making it critical to patch or mitigate exposure.
Cisco Wireless LAN Controller software versions prior to 4.2.176.0 and 5.1 are vulnerable to CVE-2009-0061.