← Back to CVEs
CVE-2018-0441
N/ADescription
A vulnerability in the 802.11r Fast Transition feature set of Cisco IOS Access Points (APs) Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to a corruption of certain timer mechanisms triggered by specific roaming events. This corruption will eventually cause a timer crash. An attacker could exploit this vulnerability by sending malicious reassociation events multiple times to the same AP in a short period of time, causing a DoS condition on the affected AP.
CVE Details
CVSS v3.1 ScoreN/A
Published10/17/2018
Last Modified11/21/2024
Sourcenvd
Honeypot Sightings0
Affected Products
cisco:access_points
Weaknesses (CWE)
CWE-400CWE-400
References
http://www.securityfocus.com/bid/105680(psirt@cisco.com)
http://www.securitytracker.com/id/1041918(psirt@cisco.com)
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20181017-ap-ft-dos(psirt@cisco.com)
http://www.securityfocus.com/bid/105680(af854a3a-2127-422b-91ae-364da2661108)
http://www.securitytracker.com/id/1041918(af854a3a-2127-422b-91ae-364da2661108)
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20181017-ap-ft-dos(af854a3a-2127-422b-91ae-364da2661108)
IOC Correlations
No correlations recorded
This product uses data from the NVD API but is not endorsed or certified by the NVD.