CVE-2007-2038

Cisco Wireless LAN Controller - Denial of Service via Crafted SNAP Packets

Title source: llm
STIX 2.1

Description

The Network Processing Unit (NPU) in the Cisco Wireless LAN Controller (WLC) before 3.2.193.5, 4.0.x before 4.0.206.0, and 4.1.x allows remote attackers on a local wireless network to cause a denial of service (loss of packet forwarding) via (1) crafted SNAP packets, (2) malformed 802.11 traffic, or (3) packets with certain header length values, aka Bug ID CSCsg36361.

References (6)

Core 6
Core References
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2007/1368
Vendor Advisory vendor-advisory x_refsource_cisco
http://www.cisco.com/warp/public/707/cisco-sa-20070412-wlc.shtml
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://securitytracker.com/id?1017908
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/33609
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/34136
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/23461

Scores

EPSS 0.0098
EPSS Percentile 58.6%

Details

Status published
Products (4)
cisco/2000_wireless_lan_controller
cisco/2100_wireless_lan_controller
cisco/4100_wireless_lan_controller
cisco/4400_wireless_lan_controller
Published Apr 16, 2007
Tracked Since Feb 18, 2026