{"$ref":"https://www.cert.ssi.gouv.fr/openapi.json","affected_systems":[],"affected_systems_content":"<ul> <li>ArubaOS versions 10.3.xx et 10.4.xx ant\u00e9rieures \u00e0 10.4.0.2</li> <li>InstantOS versions 8.11.xx ant\u00e9rieures \u00e0 8.11.1.1</li> <li>InstantOS versions 8.7.x \u00e0 8.10.xx ant\u00e9rieures \u00e0 8.10.0.7</li> <li>InstantOS versions 8.4.x \u00e0 8.6.x ant\u00e9rieures \u00e0 8.6.0.21</li> <li>InstantOS versions 6.5.x ant\u00e9rieures \u00e0 6.5.4.25</li> <li>InstantOS versions 6.4.x ant\u00e9rieures \u00e0 6.4.4.8-4.2.4.22</li> </ul> <p>L\u2019\u00e9diteur pr\u00e9cise que les versions ArubaOS 10.3.x.x et InstantOS 8.9.x.x, 8.8.x.x, 8.7.x.x, 8.5.x.x, 8.4.x.x sont en fin de vie (EOL) et ne b\u00e9n\u00e9ficient plus de mises \u00e0 jour de s\u00e9curit\u00e9.</p> ","content":"## Solution\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l'\u00e9diteur pour l'obtention des\ncorrectifs (cf. section Documentation).\n","cves":[{"name":"CVE-2023-35982","url":"https://www.cve.org/CVERecord?id=CVE-2023-35982"},{"name":"CVE-2022-25667","url":"https://www.cve.org/CVERecord?id=CVE-2022-25667"},{"name":"CVE-2023-35981","url":"https://www.cve.org/CVERecord?id=CVE-2023-35981"},{"name":"CVE-2023-35980","url":"https://www.cve.org/CVERecord?id=CVE-2023-35980"}],"links":[],"reference":"CERTFR-2023-AVI-0590","revisions":[{"description":"Version initiale","revision_date":"2023-07-26T00:00:00.000000"}],"risks":[{"description":"Ex\u00e9cution de code arbitraire \u00e0 distance"},{"description":"Atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es"}],"summary":"De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 d\u00e9couvertes dans Aruba ArubaOS et\nInstantOS. Elles permettent \u00e0 un attaquant de provoquer une ex\u00e9cution de\ncode arbitraire \u00e0 distance et une atteinte \u00e0 la confidentialit\u00e9 des\ndonn\u00e9es.\n","title":"Multiples vuln\u00e9rabilit\u00e9s dans Aruba ArubaOS et InstantOS","vendor_advisories":[{"published_at":null,"title":"Bulletin de s\u00e9curit\u00e9 Aruba ARUBA-PSA-2023-009 du 25 juillet 2023","url":"https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2023-009.txt"}]}
