CVE-2024-33516Stack-based Buffer Overflow in Arubaos

Severity
7.5HIGHNVD
CNA5.3
EPSS
0.1%
top 77.59%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMay 1

Description

An unauthenticated Denial of Service (DoS) vulnerability exists in the Auth service accessed via the PAPI protocol provided by ArubaOS. Successful exploitation of this vulnerability results in the ability to interrupt the normal operation of the controller.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HExploitability: 3.9 | Impact: 3.6

Affected Packages1 packages

NVDarubanetworks/arubaos8.10.0.08.10.0.10+3

🔴Vulnerability Details

2
GHSA
GHSA-7mrx-37fj-85qg: An unauthenticated Denial of Service (DoS) vulnerability exists in the Auth service accessed via the PAPI protocol provided by ArubaOS2024-05-01
CVEList
CVE-2024-33516: An unauthenticated Denial of Service (DoS) vulnerability exists in the Auth service accessed via the PAPI protocol provided by ArubaOS2024-05-01
CVE-2024-33516 — Stack-based Buffer Overflow in Arubaos | cvebase