A vulnerability in the Wireless Network Control daemon (wncd) of Cisco IOS XE Software for Wireless LAN Controllers could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition. This vulnerability is due to improper memory management. An attacker could exploit this vulnerability by sending a series of network requests to an affected device. A successful exploit could allow the attacker to cause the wncd process to consume available memory and eventually cause the device to reload, resulting in a DoS condition.
The product allocates memory based on an untrusted, large size value, but it does not ensure that the size is within expected limits, allowing arbitrary amounts of memory to be allocated.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Ios_xe | Cisco | 17.9.1 (including) | 17.9.1 (including) |
Ios_xe | Cisco | 17.9.1a (including) | 17.9.1a (including) |
Ios_xe | Cisco | 17.9.1w (including) | 17.9.1w (including) |
Ios_xe | Cisco | 17.9.1x (including) | 17.9.1x (including) |
Ios_xe | Cisco | 17.9.1x1 (including) | 17.9.1x1 (including) |
Ios_xe | Cisco | 17.9.1y (including) | 17.9.1y (including) |
Ios_xe | Cisco | 17.9.2 (including) | 17.9.2 (including) |
Ios_xe | Cisco | 17.9.2a (including) | 17.9.2a (including) |
Ios_xe | Cisco | 17.9.2b (including) | 17.9.2b (including) |
Ios_xe | Cisco | 17.10.1 (including) | 17.10.1 (including) |
Ios_xe | Cisco | 17.10.1a (including) | 17.10.1a (including) |
Ios_xe | Cisco | 17.10.1b (including) | 17.10.1b (including) |