BF in Aruba Central Comm svc -> unauth RCE via PAPI UDP 8211
CVE-2024-31468 Published on May 14, 2024
There are buffer overflow vulnerabilities in the underlying Central Communications service that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba's Access Point management protocol) UDP port (8211). Successful exploitation of these vulnerabilities result in the ability to execute arbitrary code as a privileged user on the underlying operating system.
Vulnerability Analysis
CVE-2024-31468 is exploitable with network access, and does not require authorization privileges or user interaction. This vulnerability is considered to have a low attack complexity. The potential impact of an exploit of this vulnerability is considered to be critical as this vulnerability has a high impact to the confidentiality, integrity and availability of this component.
Weakness Type
What is a Stack Overflow Vulnerability?
A stack-based buffer overflow condition is a condition where the buffer being overwritten is allocated on the stack (i.e., is a local variable or, rarely, a parameter to a function).
CVE-2024-31468 has been classified to as a Stack Overflow vulnerability or weakness.
Products Associated with CVE-2024-31468
You can be notified by email with stack.watch whenever vulnerabilities like CVE-2024-31468 are published in these products:
Affected Versions
Hewlett Packard Enterprise (HPE) AOS-8 Instant and AOS-10 AP:- Version 10.5.0.0, <= 10.5.1.0 is affected.
- Version 10.4.0.0, <= 10.4.1.0 is affected.
- Version 8.11.0.0, <= 8.11.2.1 is affected.
- Version 8.10.0.0, <= 8.10.0.10 is affected.
- Version 8.6.0.0, <= 8.6.0.23 is affected.
- Version 10.5.0.0, <= 10.5.1.0 is affected.
- Version 10.4.0.0, <= 10.4.1.0 is affected.
- Version 8.10.0.0, <= 8.10.0.10 is affected.
- Version 8.11.0.0, <= 8.11.2.1 is affected.
- Version 8.6.0.0, <= 8.6.0.23 is affected.
- Version 10.3.0.0 and below 10.4.0.0 is affected.
- Version 8.9.0.0 and below 8.10.0.0 is affected.
- Version 8.8.0.0 and below 8.9.0.0 is affected.
- Version 8.5.0.0 and below 8.6.0.0 is affected.
- Version 8.7.0.0 and below 8.8.0.0 is affected.
- Version 8.4.0.0 and below 8.5.0.0 is affected.
- Version 6.5.0.0 and below 6.6.0.0 is affected.
- Version 6.4.0.0 and below 6.5.0.0 is affected.
Exploit Probability
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.