CVE-2014-3291: Input Validation
Cisco Wireless LAN Controller (WLC) devices allow remote attackers to cause a denial of service (NULL pointer dereference and device restart) via a zero value in Cisco Discovery Protocol packet data that is not properly handled during SNMP polling, aka Bug ID CSCuo12321.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-3291?
CVE-2014-3291 has a high severity rating due to its potential to cause a denial of service on affected Cisco Wireless LAN Controllers.
How do I fix CVE-2014-3291?
To fix CVE-2014-3291, update your Cisco Wireless LAN Controller to the latest patched version provided by Cisco.
Which devices are affected by CVE-2014-3291?
CVE-2014-3291 affects Cisco Wireless LAN Controller devices.
What type of attack does CVE-2014-3291 enable?
CVE-2014-3291 enables remote attackers to execute a denial of service attack due to improper handling of certain packet data.
Is there a workaround for CVE-2014-3291?
There is no specific workaround mentioned for CVE-2014-3291, so applying the security update is recommended.