ICSA-23-026-04: Sierra wireless airlink router running aleos software vulnerability
Affected Software
2 affected componentsFixes available
Sierra Wireless Airlink Router (ES450, GX450) running ALEOS software<=4.9.7
Sierra Wireless Airlink Router (MP70, RV50, RV50x, RV55, LX 40, LX60) running ALEOS software<4.16.0
4.16.0
Event History
Feb 28, 2025
Advisory Published
05:12 AM
Frequently Asked Questions
1
What is the severity of ICSA-23-026-04?
ICSA-23-026-04 has been assigned a medium severity level due to the potential impact on system confidentiality, integrity, and availability.
2
How do I fix ICSA-23-026-04?
To mitigate ICSA-23-026-04, users should upgrade to the latest version of ALEOS software provided by Sierra Wireless.
3
What systems are affected by ICSA-23-026-04?
ICSA-23-026-04 affects specific models of Sierra Wireless Airlink Routers including ES450, GX450, MP70, RV50, RV50x, RV55, LX40, and LX60.
4
What are the potential impacts of ICSA-23-026-04?
The vulnerabilities in ICSA-23-026-04 could allow unauthorized access and control, leading to data breaches or denial of service.
5
Is there a workaround for ICSA-23-026-04 before applying the fix?
Until the fix is applied for ICSA-23-026-04, it is recommended to restrict access to the affected systems and implement network segmentation.