Cisco Alert
3084Warning Date
Severity Level
Warning Number
Target Sector
29 September, 2022
● High
2022-5289
All
Cisco has released a security update to address several vulnerabilities in the following products:
- Cisco Catalyst 9100 Series Access Points
- Cisco Wireless LAN Controller AireOS Software FIPS Mode
- Cisco IOS XE Wireless Controller Software for the Catalyst 9000 Family DHCP Processing
- Cisco IOS and IOS XE Software SSH
- Cisco SD-WAN Software
- Cisco IOS XE Software for Catalyst Switches MPLS
- Cisco IOS and IOS XE Software Common Industrial Protocol Request
- Cisco IOS XE Software for Catalyst 9200 Series Switches
- Cisco IOS XE Software for Embedded Wireless Controllers on Catalyst Access Points
- Cisco IOS XE Wireless Controller Software for the Catalyst 9000 Family CAPWAP Mobility
- Cisco Catalyst 9100 Series Access Points Association Request
- Cisco IOS XE Software DNS NAT Protocol Application Layer Gateway
Attacker could exploit these vulnerabilities by doing the following:
- Execute arbitrary code
- Denial of service attack (DoS)
- Escalation of privilege
The CERT team encourages users to review Cisco security advisory and apply the necessary updates:
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-wlc-udp-dos-XDyEwhNz
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-wlc-dos-mKGRrsCB
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-wlc-dhcp-dos-76pCjPxK
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ssh-excpt-dos-FzOBQTnk
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sd-wan-priv-E6e8tEdF
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-iosxe-mpls-dos-Ab4OUL3
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-iosxe-cip-dos-9rTbKLt9
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-iosxe-6vpe-dos-tJBtf5Zv
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ios-xe-cat-verify-D4NEQA6q
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ewc-priv-esc-nderYLtK
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-c9800-mob-dos-342YAc6J
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ap-assoc-dos-EgVqtON8
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-alg-dos-KU9Z8kFX