Wireless management frame processing flaw - CVE-2016-1460

 

Wireless management frame processing flaw - CVE-2016-1460

Published: July 28, 2016


Vulnerability identifier: #VU230
CSH Severity: High
CVSS v4: 6.9 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2016-1460
CWE-ID: CWE-20
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to cause denial of service conditions on the affected device.

The vulnerability exists due to insufficient handling of wireless management frames. A remote unauthenticated attacker can cause denial of service conditions on the target device by sending crafted wireless management frames to the device.

Successful exploitation of this vulnerability may result in denial of service conditions.

Affected software


How to mitigate CVE-2016-1460

Patch for this vulnerability is avaliable through the Cisco Bug Search Tool.


External References

Related Security Bulletins