Vulnerability Description
A vulnerability in the multicast DNS (mDNS) gateway feature of Cisco Aironet Series Access Points Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to insufficient input validation of incoming mDNS traffic. An attacker could exploit this vulnerability by sending a crafted mDNS packet to an affected device through a wireless network that is configured in FlexConnect local switching mode or through a wired network on a configured mDNS VLAN. A successful exploit could allow the attacker to cause the access point (AP) to reboot, resulting in a DoS condition.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Cisco | Aironet Access Point Software | - |
| Cisco | 1100 Integrated Services Router | - |
| Cisco | Aironet 1540 | - |
| Cisco | Aironet 1560 | - |
| Cisco | Aironet 1800 | - |
| Cisco | Aironet 2800 | - |
| Cisco | Aironet 3800 | - |
| Cisco | Aironet 4800 | - |
| Cisco | Catalyst 9100 | - |
| Cisco | Catalyst Iw6300 | - |
| Cisco | Esw6300 | - |
| Cisco | Catalyst 9800 Firmware | >= 17.1, < 17.3.3 |
| Cisco | Catalyst 9800 | - |
Related Weaknesses (CWE)
References
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-aVendor Advisory
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-aVendor Advisory
FAQ
What is CVE-2021-1439?
CVE-2021-1439 is a vulnerability with a CVSS score of 7.4 (HIGH). A vulnerability in the multicast DNS (mDNS) gateway feature of Cisco Aironet Series Access Points Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) conditio...
How severe is CVE-2021-1439?
CVE-2021-1439 has been rated HIGH with a CVSS base score of 7.4/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-1439?
Check the references section above for vendor advisories and patch information. Affected products include: Cisco Aironet Access Point Software, Cisco 1100 Integrated Services Router, Cisco Aironet 1540, Cisco Aironet 1560, Cisco Aironet 1800.