QID 317145

Date Published: 2022-04-19

QID 317145: Cisco Internetwork Operating System (IOS) XE Wireless Controller Software for the Catalyst 9000 Family SNMP Trap Denial of Service (DoS) Vulnerability (cisco-sa-c9800-snmp-trap-dos-mjent3Ey)

A vulnerability in Simple Network Management Protocol (SNMP) trap generation for wireless clients
of Cisco IOS XE Wireless Controller Software for the Catalyst 9000 Family could allow an unauthenticated,
adjacent attacker to cause an affected device to unexpectedly reload,
resulting in a denial of service (DoS) condition on the device.

Affected Products
Cisco devices if they are running a vulnerable release of Cisco IOS XE Wireless Controller Software for the Catalyst 9000 Family
and are configured to send SNMP traps for wireless client exclusion events (disabled by default):
Catalyst 9800 Embedded Wireless Controllers for Catalyst 9300, 9400, and 9500 Series Switches
Catalyst 9800 Series Wireless Controllers
Catalyst 9800-CL Wireless Controllers for Cloud
Embedded Wireless Controllers on Catalyst Access Points

QID Detection Logic (Authenticated):
The check matches Cisco IOS XE version retrieved via Unix Auth using "show version" command.
QID Detection Logic (Unauthenticated):
The check matches Cisco IOS XE version retrieved via SNMP or TCP/IP Fingerprint or NTP or Telnet.

A successful exploit could allow the attacker to cause the device to reload, resulting in a DoS condition.

  • CVSS V3 rated as High - 6.5 severity.
  • CVSS V2 rated as High - 6.1 severity.
  • Solution

    Customers are advised to refer to cisco-sa-c9800-snmp-trap-dos-mjent3Ey for more information.Workaround:
    There is a workaround. Customers who do not require SNMP traps for wireless-excluded clients can disable them from the CLI with the global configuration command, as shown in the following example: WLC(config)#no trapflags client excluded. Customers are advised to refer to cisco-sa-c9800-snmp-trap-dos-mjent3Ey for more information.

    CVEs related to QID 317145

    Software Advisories
    Advisory ID Software Component Link
    cisco-sa-c9800-snmp-trap-dos-mjent3Ey URL Logo tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-c9800-snmp-trap-dos-mjent3Ey