First published: Thu Nov 03 2022(Updated: )
A buffer overflow vulnerability exists in the ArubaOS command line interface. Successful exploitation of this vulnerability results in a denial of service on the affected system.
Credit: security-alert@hpe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Arubanetworks Sd-wan | >=8.7.0.0-2.3.0.0<8.7.0.0-2.3.0.6 | |
Arubanetworks Arubaos | >=6.5.4.0<6.5.4.22 | |
Arubanetworks Arubaos | >=8.4.0.0<8.6.0.17 | |
Arubanetworks Arubaos | >=8.7.0.0<8.7.1.9 | |
Arubanetworks Arubaos | >=8.8.0.0<10.3.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-37910 is a buffer overflow vulnerability in the ArubaOS command line interface that can result in a denial of service on the affected system.
CVE-2022-37910 has a severity rating of 6.5, which is considered medium.
ArubaOS versions 6.5.4.0 to 6.5.4.22, 8.4.0.0 to 8.6.0.17, 8.7.0.0 to 8.7.0.0-2.3.0.6, 8.7.0.0 to 8.7.1.9, and 8.8.0.0 to 10.3.0.1 are affected by CVE-2022-37910.
Apply the latest security updates provided by Aruba Networks to the affected ArubaOS versions mentioned in the vulnerability description.
You can find more information about CVE-2022-37910 in the Aruba Networks security advisory at the following URL: https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2022-016.txt