First published: Thu Jan 24 2013(Updated: )
The Wireless Intrusion Prevention System (wIPS) component on Cisco Wireless LAN Controller (WLC) devices with software 7.0 before 7.0.235.0, 7.1 and 7.2 before 7.2.110.0, and 7.3 before 7.3.101.0 allows remote attackers to cause a denial of service (device reload) via crafted IP packets, aka Bug ID CSCtx80743.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Wireless LAN Controllers | =7.0 | |
Cisco Wireless LAN Controllers | =7.0.98.0 | |
Cisco Wireless LAN Controllers | =7.1 | |
Cisco Wireless LAN Controllers | =7.2 | |
Cisco Wireless LAN Controllers | =7.3 | |
Cisco 2500 Wireless LAN Controller | ||
Cisco 2100 Wireless LAN Controller | ||
Cisco 2500 Wireless LAN Controller | ||
Cisco 4100 Wireless LAN Controller | ||
Cisco 4400 Wireless LAN Controller | ||
Cisco 5500 Wireless LAN Controller | ||
Cisco 7500 Wireless LAN Controller | ||
Cisco 8500 Wireless LAN Controller |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-1102 has a high severity rating due to its potential to cause a denial of service through device reloads.
To fix CVE-2013-1102, upgrade your Cisco Wireless LAN Controller software to a version that is not affected, specifically 7.0.235.0 or later, 7.2.110.0 or later, or 7.3.101.0 or later.
CVE-2013-1102 affects Cisco Wireless LAN Controller versions 7.0 before 7.0.235.0, 7.1, 7.2 before 7.2.110.0, and 7.3 before 7.3.101.0.
CVE-2013-1102 facilitates denial of service attacks by allowing remote attackers to send crafted IP packets to the Cisco Wireless LAN Controller.
Organizations using vulnerable versions of Cisco Wireless LAN Controllers are at risk of experiencing service outages due to CVE-2013-1102.