CVE-2007-2039

Cisco Wireless LAN Controller Software < 3.2.171.5 - Denial of Service via Crafted SNAP Packets

Title source: llm
STIX 2.1

Description

The Network Processing Unit (NPU) in the Cisco Wireless LAN Controller (WLC) before 3.2.171.5, 4.0.x before 4.0.206.0, and 4.1.x allows remote attackers on a local wireless network to cause a denial of service (loss of packet forwarding) via (1) crafted SNAP packets, (2) malformed 802.11 traffic, or (3) packets with certain header length values, aka Bug IDs CSCsg15901 and CSCsh10841.

References (7)

Core 7
Core References
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2007/1368
Patch, Vendor Advisory vendor-advisory x_refsource_cisco
http://www.cisco.com/warp/public/707/cisco-sa-20070412-wlc.shtml
Broken Link vdb-entry x_refsource_osvdb
http://www.osvdb.org/34137
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://securitytracker.com/id?1017908
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/33609
Broken Link vdb-entry x_refsource_osvdb
http://www.osvdb.org/34139
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/23461

Scores

EPSS 0.0121
EPSS Percentile 65.2%

Details

CWE
CWE-399
Status published
Products (1)
cisco/wireless_lan_controller_software 3.2 - 3.2.171.5
Published Apr 16, 2007
Tracked Since Feb 18, 2026