Wireless management frame processing flaw - CVE-2016-1460

 

Wireless management frame processing flaw - CVE-2016-1460

Published: July 28, 2016


Vulnerability identifier: #VU230
CSH Severity: High
CVSS v4.0: CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Amber
CVE-ID: CVE-2016-1460
CWE-ID: CWE-20
Exploitation vector: Remote access
Exploit availability: No public exploit available
Vendor:
Affected software:

Detailed vulnerability description

The vulnerability allows a remote attacker to cause denial of service conditions on the affected device.

The vulnerability exists due to insufficient handling of wireless management frames. A remote unauthenticated attacker can cause denial of service conditions on the target device by sending crafted wireless management frames to the device.

Successful exploitation of this vulnerability may result in denial of service conditions.

How to mitigate CVE-2016-1460

Patch for this vulnerability is avaliable through the Cisco Bug Search Tool.

Sources