HPE ArubaOS
cpe:2.3:o:hpe:arubaos:*:*:*:*:*:*:*
- <= 10.8.0.0
- <= 10.7.2.2
- <= 10.4.1.10
- <= 8.13.1.1
- <= 8.12.0.6
- <= 8.10.0.21
- ~10.6
- ~10.5
- ~10.3
- ~8.12
- ~8.11
- ~8.9
- ~8.8
- ~8.7
- ~8.6
- ~6.5.4
- ~8.7.0.0-2.3.0
- ~8.6.0.4-2.2
A denial-of-service vulnerability has been identified in the network management service of HPE Aruba Networking's AOS-8 Operating System. This vulnerability allows an unauthenticated remote attacker to disrupt normal device operations by sending specially crafted network packets to the affected device. Successful exploitation could cause the service process to terminate unexpectedly, leading to a denial-of-service condition.
Exploitation of this vulnerability can cause the affected service process to crash, disrupting normal device operations and management functions.
Users can upgrade to AOS-8.13.1.2 or AOS-8.12.0.7 to address this vulnerability. AOS-8.10.0.22 also includes the patch. Instructions for downloading the update are available on the HPE Networking Support Portal.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.