Aruba Alert
2042Warning Date
Severity Level
Warning Number
Target Sector
30 August, 2023
● High
2023-5762
All
Description:
Aruba has released security updates to address multiple vulnerabilities in the following products:
- HPE Aruba Networking Switch Models:
- Aruba 5400R Series Switches
- Aruba 3810 Series Switches
- Aruba 2920 Series Switches
- Aruba 2930F Series Switches
- Aruba 2930M Series Switches
- Aruba 2530 Series Switches
- Aruba 2540 Series Switches
- Software Branch Versions:
- ArubaOS-Switch 16.11.xxxx: KB/WC/YA/YB/YC.16.11.0012 and below.
- ArubaOS-Switch 16.10.xxxx: KB/WC/YA/YB/YC.16.10.0025 and below.
- ArubaOS-Switch 16.10.xxxx: WB.16.10.23 and below.
- ArubaOS-Switch 16.09.xxxx: All versions.
- ArubaOS-Switch 16.08.xxxx: KB/WB/WC/YA/YB/YC.16.08.0026 and below.
- ArubaOS-Switch 16.07.xxxx: All versions.
- ArubaOS-Switch 16.06.xxxx: All versions.
- ArubaOS-Switch 16.05.xxxx: All versions.
- ArubaOS-Switch 16.04.xxxx: KA/RA.16.04.0026 and below.
- ArubaOS-Switch 16.03.xxxx: All versions.
- ArubaOS-Switch 16.02.xxxx: All versions.
- ArubaOS-Switch 16.01.xxxx: All versions.
- ArubaOS-Switch 15.xx.xxxx: 15.16.0025 and below.
Threats:
The attacker could exploit these vulnerabilities by doing the following:
- Stored XSS
- Denial of Service
- Memory Corruption
Best practice and Recommendations:
The CERT team encourages users to review Aruba security advisory and apply the necessary updates: