QID 317145
Date Published: 2022-04-19
QID 317145: Cisco Internetwork Operating System (IOS) XE Wireless Controller Software for the Catalyst 9000 Family SNMP Trap Denial of Service (DoS) Vulnerability (cisco-sa-c9800-snmp-trap-dos-mjent3Ey)
A vulnerability in Simple Network Management Protocol (SNMP) trap generation for wireless clients
of Cisco IOS XE Wireless Controller Software for the Catalyst 9000 Family could allow an unauthenticated,
adjacent attacker to cause an affected device to unexpectedly reload,
resulting in a denial of service (DoS) condition on the device.
Affected Products
Cisco devices if they are running a vulnerable release of Cisco IOS XE Wireless Controller Software for the Catalyst 9000 Family
and are configured to send SNMP traps for wireless client exclusion events (disabled by default):
Catalyst 9800 Embedded Wireless Controllers for Catalyst 9300, 9400, and 9500 Series Switches
Catalyst 9800 Series Wireless Controllers
Catalyst 9800-CL Wireless Controllers for Cloud
Embedded Wireless Controllers on Catalyst Access Points
QID Detection Logic (Authenticated):
The check matches Cisco IOS XE version retrieved via Unix Auth using "show version" command.
QID Detection Logic (Unauthenticated):
The check matches Cisco IOS XE version retrieved via SNMP or TCP/IP Fingerprint or NTP or Telnet.
A successful exploit could allow the attacker to cause the device to reload, resulting in a DoS condition.
Customers are advised to refer to cisco-sa-c9800-snmp-trap-dos-mjent3Ey for more information.Workaround:
There is a workaround. Customers who do not require SNMP traps for wireless-excluded clients can disable them from the CLI with the global configuration command, as shown in the following example: WLC(config)#no trapflags client excluded. Customers are advised to refer to cisco-sa-c9800-snmp-trap-dos-mjent3Ey for more information.
- cisco-sa-c9800-snmp-trap-dos-mjent3Ey -
tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-c9800-snmp-trap-dos-mjent3Ey
CVEs related to QID 317145
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| cisco-sa-c9800-snmp-trap-dos-mjent3Ey |
|