Buffer overflow in ArubaOS (AOS) and SD-WAN - CVE-2023-22757
Published: March 1, 2023
Vulnerability details
The vulnerability allows a remote attacker to execute arbitrary code on the target system.
The vulnerability exists due to a boundary error in the PAPI Protocol. A remote attacker can send specially crafted packets to port 8211/UDP, trigger memory corruption and execute arbitrary code on the target system.
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.
Affected software
SD-WAN
How to mitigate CVE-2023-22757
SD-WAN - update to 8.7.0.0-2.3.0.9