Extreme Networks Information for VU#878044

SNMPv3 improper HMAC validation allows authentication bypass

Status

Affected

Vendor Statement

Extreme Networks products running "Extremeware" software are not vulnerable.

Extreme Networks products running "EXOS" software are vulnerable.
This vulnerability is fixed in EXOS patch release 11.6.4.11-patch1-7 and will be integrated into the subsequent sustaining releases.

Vendor Information

The vendor has not provided us with any further information regarding this vulnerability.

Vendor References

None

Addendum

There are no additional comments at this time.

If you have feedback, comments, or additional information about this vulnerability, please send us email.