VYPR
Medium severity4.3NVD Advisory· Published Sep 6, 2022· Updated Jun 17, 2026

CVE-2022-23689

CVE-2022-23689

Description

Multiple vulnerabilities exist in the processing of packet data by the LLDP service of AOS-CX. Successful exploitation of these vulnerabilities may allow an attacker to impact the availability of the AOS-CX LLDP service and/or the management plane of the switch in ArubaOS-CX Switches version(s): AOS-CX 10.09.xxxx: 10.09.1010 and below, AOS-CX 10.08.xxxx: 10.08.1050 and below, AOS-CX 10.06.xxxx: 10.06.0190 and below. Aruba has released upgrades for ArubaOS-CX Switch Devices that address these security vulnerabilities.

Affected products

3
  • cpe:2.3:o:arubanetworks:aos-cx:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:arubanetworks:aos-cx:*:*:*:*:*:*:*:*range: >=10.06.0000,<10.06.0200
    • (no CPE)range: 10.09.xxxx <= 10.09.1010, 10.08.xxxx <= 10.08.1050, 10.06.xxxx <= 10.06.0190
  • ArubaOS/AOS-CXdescription

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.