HPE Aruba Networking product security update advisory

Overview
HPE has released security updates to fix vulnerabilities in Aruba Networking products. Users of affected products are advised to update to the latest version.

 

Affected Products

 

CVE-2024-54006, CVE-2024-54007

501 Wireless Client Bridge Version: ~ V2.1.1.0-B0030 (inclusive)

 

Resolved Vulnerabilities

Multiple Instruction Injection Vulnerability in 501 Wireless Client Bridge (CVE-2024-54006, CVE-2024-54007)

 

 

Vulnerability Patches

Vulnerability patches have been made available in the latest updates. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.

CVE-2024-54006, CVE-2024-54007

501 Wireless Client Bridge version: V2.1.1.0-B0033 or at least

 

 

References

[1] HPESBNW04763 rev.1 – HPE Aruba Networking 501 Wireless Client Bridge Authenticated Remote Command Injection Vulnerabilities
https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbnw04763en_us&docLocale=en_US