7.4

CVE-2021-34740

A vulnerability in the WLAN Control Protocol (WCP) implementation for Cisco Aironet Access Point (AP) software could allow an unauthenticated, adjacent attacker to cause a reload of an affected device, resulting in a denial of service (DoS) condition. This vulnerability is due to incorrect error handling when an affected device receives an unexpected 802.11 frame. An attacker could exploit this vulnerability by sending certain 802.11 frames over the wireless network to an interface on an affected AP. A successful exploit could allow the attacker to cause a packet buffer leak. This could eventually result in buffer allocation failures, which would trigger a reload of the affected device.

Data is provided by the National Vulnerability Database (NVD)
CiscoAironet Access Point Software Version >= 8.10.0 < 8.10.162.0
   Cisco1100-4g/6g Integrated Services Router Version-
   Cisco1100-4p Integrated Services Router Version-
   Cisco1100-8p Integrated Services Router Version-
   Cisco1100 Integrated Services Router Version-
   Cisco1101-4p Integrated Services Router Version-
   Cisco1101 Integrated Services Router Version-
   Cisco1109-2p Integrated Services Router Version-
   Cisco1109-4p Integrated Services Router Version-
   Cisco1109 Integrated Services Router Version-
   Cisco1111x-8p Integrated Services Router Version-
   Cisco1111x Integrated Services Router Version-
   Cisco111x Integrated Services Router Version-
   Cisco1120 Integrated Services Router Version-
   Cisco1160 Integrated Services Router Version-
   Cisco6300 Series Access Points Version-
   CiscoAironet 1540 Version-
   CiscoAironet 1542d Version-
   CiscoAironet 1542i Version-
   CiscoAironet 1560 Version-
   CiscoAironet 1562d Version-
   CiscoAironet 1562e Version-
   CiscoAironet 1562i Version-
   CiscoAironet 1800 Version-
   CiscoAironet 1800i Version-
   CiscoAironet 1810 Version-
   CiscoAironet 1810w Version-
   CiscoAironet 1815 Version-
   CiscoAironet 1815i Version-
   CiscoAironet 1830 Version-
   CiscoAironet 1830e Version-
   CiscoAironet 1830i Version-
   CiscoAironet 1840 Version-
   CiscoAironet 1850 Version-
   CiscoAironet 1850e Version-
   CiscoAironet 1850i Version-
   CiscoAironet 2800 Version-
   CiscoAironet 2800e Version-
   CiscoAironet 2800i Version-
   CiscoAironet 3800 Version-
   CiscoAironet 3800e Version-
   CiscoAironet 3800i Version-
   CiscoAironet 3800p Version-
   CiscoAironet 4800 Version-
   CiscoCatalyst 9100 Version-
   CiscoCatalyst 9105 Version-
   CiscoCatalyst 9105axi Version-
   CiscoCatalyst 9105axw Version-
   CiscoCatalyst 9115 Version-
   CiscoCatalyst 9115 Ap Version-
   CiscoCatalyst 9115axe Version-
   CiscoCatalyst 9115axi Version-
   CiscoCatalyst 9117 Version-
   CiscoCatalyst 9117 Ap Version-
   CiscoCatalyst 9117axi Version-
   CiscoCatalyst 9120 Version-
   CiscoCatalyst 9120 Ap Version-
   CiscoCatalyst 9120axe Version-
   CiscoCatalyst 9120axi Version-
   CiscoCatalyst 9120axp Version-
   CiscoCatalyst 9124 Version-
   CiscoCatalyst 9124axd Version-
   CiscoCatalyst 9124axi Version-
   CiscoCatalyst 9130 Version-
   CiscoCatalyst 9130 Ap Version-
   CiscoCatalyst 9130axe Version-
   CiscoCatalyst 9130axi Version-
   CiscoCatalyst Iw6300 Version-
   CiscoCatalyst Iw6300 Ac Version-
   CiscoCatalyst Iw6300 Dc Version-
   CiscoCatalyst Iw6300 Dcw Version-
CiscoAironet Access Point Software Version17.2
   Cisco1100-4g/6g Integrated Services Router Version-
   Cisco1100-4p Integrated Services Router Version-
   Cisco1100-8p Integrated Services Router Version-
   Cisco1100 Integrated Services Router Version-
   Cisco1101-4p Integrated Services Router Version-
   Cisco1101 Integrated Services Router Version-
   Cisco1109-2p Integrated Services Router Version-
   Cisco1109-4p Integrated Services Router Version-
   Cisco1109 Integrated Services Router Version-
   Cisco1111x-8p Integrated Services Router Version-
   Cisco1111x Integrated Services Router Version-
   Cisco111x Integrated Services Router Version-
   Cisco1120 Integrated Services Router Version-
   Cisco1160 Integrated Services Router Version-
   Cisco6300 Series Access Points Version-
   CiscoAironet 1540 Version-
   CiscoAironet 1542d Version-
   CiscoAironet 1542i Version-
   CiscoAironet 1560 Version-
   CiscoAironet 1562d Version-
   CiscoAironet 1562e Version-
   CiscoAironet 1562i Version-
   CiscoAironet 1800 Version-
   CiscoAironet 1800i Version-
   CiscoAironet 1810 Version-
   CiscoAironet 1810w Version-
   CiscoAironet 1815 Version-
   CiscoAironet 1815i Version-
   CiscoAironet 1830 Version-
   CiscoAironet 1830e Version-
   CiscoAironet 1830i Version-
   CiscoAironet 1840 Version-
   CiscoAironet 1850 Version-
   CiscoAironet 1850e Version-
   CiscoAironet 1850i Version-
   CiscoAironet 2800 Version-
   CiscoAironet 2800e Version-
   CiscoAironet 2800i Version-
   CiscoAironet 3800 Version-
   CiscoAironet 3800e Version-
   CiscoAironet 3800i Version-
   CiscoAironet 3800p Version-
   CiscoAironet 4800 Version-
   CiscoCatalyst 9100 Version-
   CiscoCatalyst 9105 Version-
   CiscoCatalyst 9105axi Version-
   CiscoCatalyst 9105axw Version-
   CiscoCatalyst 9115 Version-
   CiscoCatalyst 9115 Ap Version-
   CiscoCatalyst 9115axe Version-
   CiscoCatalyst 9115axi Version-
   CiscoCatalyst 9117 Version-
   CiscoCatalyst 9117 Ap Version-
   CiscoCatalyst 9117axi Version-
   CiscoCatalyst 9120 Version-
   CiscoCatalyst 9120 Ap Version-
   CiscoCatalyst 9120axe Version-
   CiscoCatalyst 9120axi Version-
   CiscoCatalyst 9120axp Version-
   CiscoCatalyst 9124 Version-
   CiscoCatalyst 9124axd Version-
   CiscoCatalyst 9124axi Version-
   CiscoCatalyst 9130 Version-
   CiscoCatalyst 9130 Ap Version-
   CiscoCatalyst 9130axe Version-
   CiscoCatalyst 9130axi Version-
   CiscoCatalyst Iw6300 Version-
   CiscoCatalyst Iw6300 Ac Version-
   CiscoCatalyst Iw6300 Dc Version-
   CiscoCatalyst Iw6300 Dcw Version-
CiscoAironet Access Point Software Version17.3
   Cisco1100-4g/6g Integrated Services Router Version-
   Cisco1100-4p Integrated Services Router Version-
   Cisco1100-8p Integrated Services Router Version-
   Cisco1100 Integrated Services Router Version-
   Cisco1101-4p Integrated Services Router Version-
   Cisco1101 Integrated Services Router Version-
   Cisco1109-2p Integrated Services Router Version-
   Cisco1109-4p Integrated Services Router Version-
   Cisco1109 Integrated Services Router Version-
   Cisco1111x-8p Integrated Services Router Version-
   Cisco1111x Integrated Services Router Version-
   Cisco111x Integrated Services Router Version-
   Cisco1120 Integrated Services Router Version-
   Cisco1160 Integrated Services Router Version-
   Cisco6300 Series Access Points Version-
   CiscoAironet 1540 Version-
   CiscoAironet 1542d Version-
   CiscoAironet 1542i Version-
   CiscoAironet 1560 Version-
   CiscoAironet 1562d Version-
   CiscoAironet 1562e Version-
   CiscoAironet 1562i Version-
   CiscoAironet 1800 Version-
   CiscoAironet 1800i Version-
   CiscoAironet 1810 Version-
   CiscoAironet 1810w Version-
   CiscoAironet 1815 Version-
   CiscoAironet 1815i Version-
   CiscoAironet 1830 Version-
   CiscoAironet 1830e Version-
   CiscoAironet 1830i Version-
   CiscoAironet 1840 Version-
   CiscoAironet 1850 Version-
   CiscoAironet 1850e Version-
   CiscoAironet 1850i Version-
   CiscoAironet 2800 Version-
   CiscoAironet 2800e Version-
   CiscoAironet 2800i Version-
   CiscoAironet 3800 Version-
   CiscoAironet 3800e Version-
   CiscoAironet 3800i Version-
   CiscoAironet 3800p Version-
   CiscoAironet 4800 Version-
   CiscoCatalyst 9100 Version-
   CiscoCatalyst 9105 Version-
   CiscoCatalyst 9105axi Version-
   CiscoCatalyst 9105axw Version-
   CiscoCatalyst 9115 Version-
   CiscoCatalyst 9115 Ap Version-
   CiscoCatalyst 9115axe Version-
   CiscoCatalyst 9115axi Version-
   CiscoCatalyst 9117 Version-
   CiscoCatalyst 9117 Ap Version-
   CiscoCatalyst 9117axi Version-
   CiscoCatalyst 9120 Version-
   CiscoCatalyst 9120 Ap Version-
   CiscoCatalyst 9120axe Version-
   CiscoCatalyst 9120axi Version-
   CiscoCatalyst 9120axp Version-
   CiscoCatalyst 9124 Version-
   CiscoCatalyst 9124axd Version-
   CiscoCatalyst 9124axi Version-
   CiscoCatalyst 9130 Version-
   CiscoCatalyst 9130 Ap Version-
   CiscoCatalyst 9130axe Version-
   CiscoCatalyst 9130axi Version-
   CiscoCatalyst Iw6300 Version-
   CiscoCatalyst Iw6300 Ac Version-
   CiscoCatalyst Iw6300 Dc Version-
   CiscoCatalyst Iw6300 Dcw Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.1% 0.249
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.4 2.8 4
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H
nvd@nist.gov 6.1 6.5 6.9
AV:A/AC:L/Au:N/C:N/I:N/A:C
psirt@cisco.com 7.4 2.8 4
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H
CWE-401 Missing Release of Memory after Effective Lifetime

The product does not sufficiently track and release allocated memory after it has been used, which slowly consumes remaining memory.