The DHCP implementation in Cisco IOS on Aironet access points does not properly handle error conditions with short leases and unsuccessful lease-renewal attempts, which allows remote attackers to cause a denial of service (device restart) by triggering a transition into a recovery state that was intended to involve a network-interface restart but actually involves a full device restart, aka Bug ID CSCtn16281.
Weaknesses in this category are related to improper management of system resources.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/98691 | vdb entry |
http://www.securitytracker.com/id/1031218 | vdb entry |
http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2014-7997 | vendor advisory |