First published: Mon Mar 29 2021(Updated: )
A remote denial of service (dos) vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version(s): Aruba Instant 8.3.x: 8.3.0.12 and below; Aruba Instant 8.5.x: 8.5.0.9 and below; Aruba Instant 8.6.x: 8.6.0.4 and below. Aruba has released patches for Aruba Instant that address this security vulnerability.
Credit: security-alert@hpe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Aruba Instant | >=8.3.0.0<8.3.0.13 | |
Aruba Instant | >=8.5.0.0<8.5.0.10 | |
Aruba Instant | >=8.6.0.0<8.6.0.5 | |
Siemens SCALANCE W1750D | <8.7.0 | |
Siemens Scalance W1750D Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-25143 has been classified as a remote denial of service vulnerability.
To fix CVE-2021-25143, update your Aruba Instant Access Point to version 8.3.0.13 or later, 8.5.0.10 or later, or 8.6.0.5 or later.
Versions 8.3.0.12 and below, 8.5.0.9 and below, and 8.6.0.4 and below of Aruba Instant Access Point are affected by CVE-2021-25143.
Yes, CVE-2021-25143 can be exploited remotely, leading to a denial of service condition.
Yes, Aruba has released patches for CVE-2021-25143 to address the vulnerability.