A remote buffer overflow vulnerability was discovered in HPE Aruba Instant (IAP) version(s): Aruba Instant 8.7.x.x: 8.7.0.0 through 8.7.1.2. Aruba has released patches for Aruba Instant (IAP) that address this security vulnerability.
The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer, leading to a buffer overflow.
Link | Tags |
---|---|
https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2021-017.txt | vendor advisory |
https://cert-portal.siemens.com/productcert/pdf/ssa-917476.pdf | third party advisory |