First published: Mon Nov 02 2009(Updated: )
ArubaOS 3.3.1.x, 3.3.2.x, RN 3.1.x, 3.4.x, and 3.3.2.x-FIPS on the Aruba Mobility Controller allows remote attackers to cause a denial of service (Access Point crash) via a malformed 802.11 Association Request management frame.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Arubanetworks Arubaos | =3.1.1-rn | |
Arubanetworks Arubaos | =3.3.1.16 | |
Arubanetworks Arubaos | =3.3.1.29 | |
Arubanetworks Arubaos | =3.3.1.30 | |
Arubanetworks Arubaos | =3.3.2.6 | |
Arubanetworks Arubaos | =3.3.2.14-fips | |
Arubanetworks Arubaos | =3.4.0 | |
Arubanetworks Aruba Mobility Controller |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-3836 has a severity level that allows remote attackers to cause a denial of service, impacting the stability of Access Points.
To fix CVE-2009-3836, ensure you update the ArubaOS to the latest version that addresses this vulnerability.
CVE-2009-3836 affects ArubaOS versions 3.3.1.x, 3.3.2.x, RN 3.1.x, and 3.4.x.
CVE-2009-3836 facilitates a denial of service attack that can crash Access Points.
There are no documented workarounds for CVE-2009-3836, so updating the software is recommended.