Aruba Updates
2409Warning Date
Severity Level
Warning Number
Target Sector
9 December, 2020
● Critical
2020-2159
All - Manufacturing
Description:
Aruba has released security updates to address multipule vulnerabilities in the following products:
- ArubaOS
- 6.4.4.23, 6.5.4.17, 8.2.2.9, 8.3.0.13, 8.5.0.10, 8.6.0.5, 8.7.0.0 and below
- 8.2.2.9, 8.3.0.13, 8.5.0.10, 8.6.0.5, 8.7.0.0 and below
- 8.5.0.10, 8.6.0.5, 8.7.0.0 and below
- SD-WAN
- 2.1.0.1, 2.2.0.0 and below
Threats:
An attacker could exploit these vulnerabilities by doing the following:
- Remote compromise of the system
- Remote Command Injection
- Buffer overflow
Best practice and Recommendations:
The CERT team encourages users to review Aruba security advisory and apply the necessary updates: