Authenticated Denial of Service Vulnerability in ArubaOS-Switch SSH Daemon
CVSS Details
- CVSS 3.1 Base Score: 4.9
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Aruba Aos S | — | To address the vulnerabilities described above for the
affected release branches, it is recommended to upgrade the software
to the following versions:
- ArubaOS-Switch 16.11.xxxx: KB/WC/YA/YB/YC.16.11.0016 and above.
- ArubaOS-Switch 16.10.xxxx: WB.16.10.0025 and above.
- ArubaOS-Switch 16.04.xxxx: KA/RA.16.04.0028 and above.
Note: 16.10.xxxx:KB/WC/YA/YB/YC will not receive fixes for these vulnerabilities. Upgrading to KB/WC/YA/YB/YC.16.11.0016 and above will address these vulnerabilities.
The software versions listed in the Resolution section are the supported branches as of the publication date of this advisory. | Mar 6, 2025 | Mar 26, 2024 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub