OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
[SA11034] Nortel WLAN Access Point 2200 Denial of Service

From: Secunia Security Advisories (sec-advsecunia.com)
Date: Wed Mar 03 2004 - 09:37:40 CST


TITLE:
Nortel WLAN Access Point 2200 Denial of Service

SECUNIA ADVISORY ID:
SA11034

VERIFY ADVISORY:
http://secunia.com/advisories/11034/

CRITICAL:
Not critical

IMPACT:
DoS

WHERE:
From local network

OPERATING SYSTEM:
Nortel WLAN 2200 Series

DESCRIPTION:
Mark Ludwik has reported a vulnerability in Nortel WLAN Access Point
2200, allowing malicious people to cause a Denial of Service.

The problem is that the device fails to handle large amounts of data
sent to an administrative port (23/TCP and 80/TCP). This causes the
administrative service to stop responding.

Other versions may also be affected.

SOLUTION:
Filter traffic to ensure that only trusted IP addresses can access
the administrative ports.

PROVIDED AND/OR DISCOVERED BY:
Mark Ludwik

----------------------------------------------------------------------

About:
This Advisory was delivered by Secunia as a free service to help
everybody keeping their systems up to date against the latest
vulnerabilities.

Subscribe:
http://secunia.com/secunia_security_advisories/

Definitions: (Criticality, Where etc.)
http://secunia.com/about_secunia_advisories/

Please Note:
Secunia recommends that you verify all advisories you receive by
clicking the link.
Secunia NEVER sends attached files with advisories.
Secunia does not advise people to install third party patches, only
use those supplied by the vendor.

----------------------------------------------------------------------

Unsubscribe: Secunia Security Advisories

----------------------------------------------------------------------