{"api_version":"v1","generated_at":"2026-10-09T19:20:00+00:00","product":{"cve_count":3,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-hewlett-packard-enterprise-arubaos-switch-11dcb33bacf3","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"ArubaOS-Switch","next_cursor":null,"observations":[{"affected":"ArubaOS-Switch 16.11.xxxx: KB/WC/YA/YB/YC.16.11.0012 and below.; ArubaOS-Switch 16.10.xxxx: KB/WC/YA/YB/YC.16.10.0025 and below.; ArubaOS-Switch 16.10.xxxx: WB.16.10.23 and below.; ArubaOS-Switch 16.09.xxxx: All versions.; ArubaOS-Switch 16.08.xxxx: KB/WB/WC/YA/YB/YC.16.08.0026 and below.; ArubaOS-Switch 16.07.xxxx: All versions.; ArubaOS-Switch 16.06.xxxx: All versions.; ArubaOS-Switch 16.05.xxxx: All versions.","affected_versions_present":true,"cve_id":"CVE-2023-39268","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-39268","fixed":"To address the vulnerabilities described above for the affected release branches, it is recommended to upgrade the software to the following versions: - ArubaOS-Switch 16.11.xxxx: KB/WC/YA/YB/YC.16.11.0013 and above. - ArubaOS-Switch 16.10.xxxx: WB.16.10.0024 and above. - ArubaOS-Switch 16.08.xxxx: KB/WB/WC/YA/YB/YC.16.08.0027 and above. - ArubaOS-Switch 16.04.xxxx: KA/RA.16.04.0027 and above. - ArubaOS-Switch 15.xx.xxxx: A.15.16.0026 and above. Note: 16.10.xxxx:KB/WC/YA/YB/YC will not receive fixes for these vulnerabilities. Upgrading to KB/WC/YA/YB/YC.16.11.0013 and above will address these vulnerabilities. The software versions listed in the Resolution section are the supported branches as of the publication date of this advisory.","last_modified":"2024-09-27T19:51:59.087Z","patch_url":"https://csaf.arubanetworking.hpe.com/2023/hpe_aruba_networking_-_2023-013.json","primary_source":"","published":"2023-08-29T19:38:58.346Z"},{"affected":"ArubaOS-Switch 16.11.xxxx: KB/WC/YA/YB/YC.16.11.0012 and below.; ArubaOS-Switch 16.10.xxxx: KB/WC/YA/YB/YC.16.10.0025 and below.; ArubaOS-Switch 16.10.xxxx: WB.16.10.23 and below.; ArubaOS-Switch 16.09.xxxx: All versions.; ArubaOS-Switch 16.08.xxxx: KB/WB/WC/YA/YB/YC.16.08.0026 and below.; ArubaOS-Switch 16.07.xxxx: All versions.; ArubaOS-Switch 16.06.xxxx: All versions.; ArubaOS-Switch 16.05.xxxx: All versions.","affected_versions_present":true,"cve_id":"CVE-2023-39267","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-39267","fixed":"To address the vulnerabilities described above for the affected release branches, it is recommended to upgrade the software to the following versions: - ArubaOS-Switch 16.11.xxxx: KB/WC/YA/YB/YC.16.11.0013 and above. - ArubaOS-Switch 16.10.xxxx: WB.16.10.0024 and above. - ArubaOS-Switch 16.08.xxxx: KB/WB/WC/YA/YB/YC.16.08.0027 and above. - ArubaOS-Switch 16.04.xxxx: KA/RA.16.04.0027 and above. - ArubaOS-Switch 15.xx.xxxx: A.15.16.0026 and above. Note: 16.10.xxxx:KB/WC/YA/YB/YC will not receive fixes for these vulnerabilities. Upgrading to KB/WC/YA/YB/YC.16.11.0013 and above will address these vulnerabilities. The software versions listed in the Resolution section are the supported branches as of the publication date of this advisory.","last_modified":"2024-09-27T19:54:56.961Z","patch_url":"https://csaf.arubanetworking.hpe.com/2023/hpe_aruba_networking_-_2023-013.json","primary_source":"","published":"2023-08-29T19:28:55.315Z"},{"affected":"ArubaOS-Switch 16.11.xxxx: KB/WC/YA/YB/YC.16.11.0012 and below.; ArubaOS-Switch 16.10.xxxx: KB/WC/YA/YB/YC.16.10.0025 and below.; ArubaOS-Switch 16.10.xxxx: WB.16.10.23 and below.; ArubaOS-Switch 16.09.xxxx: All versions.; ArubaOS-Switch 16.08.xxxx: KB/WB/WC/YA/YB/YC.16.08.0026 and below.; ArubaOS-Switch 16.07.xxxx: All versions.; ArubaOS-Switch 16.06.xxxx: All versions.; ArubaOS-Switch 16.05.xxxx: All versions.","affected_versions_present":true,"cve_id":"CVE-2023-39266","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-39266","fixed":"To address the vulnerabilities described above for the affected release branches, it is recommended to upgrade the software to the following versions: - ArubaOS-Switch 16.11.xxxx: KB/WC/YA/YB/YC.16.11.0013 and above. - ArubaOS-Switch 16.10.xxxx: WB.16.10.0024 and above. - ArubaOS-Switch 16.08.xxxx: KB/WB/WC/YA/YB/YC.16.08.0027 and above. - ArubaOS-Switch 16.04.xxxx: KA/RA.16.04.0027 and above. - ArubaOS-Switch 15.xx.xxxx: A.15.16.0026 and above. Note: 16.10.xxxx:KB/WC/YA/YB/YC will not receive fixes for these vulnerabilities. Upgrading to KB/WC/YA/YB/YC.16.11.0013 and above will address these vulnerabilities. The software versions listed in the Resolution section are the supported branches as of the publication date of this advisory.","last_modified":"2024-09-27T21:56:37.037Z","patch_url":"https://csaf.arubanetworking.hpe.com/2023/hpe_aruba_networking_-_2023-013.json","primary_source":"","published":"2023-08-29T19:20:18.105Z"}],"source_generated_at":"2026-10-09T06:17:25.511Z","vendor":"Hewlett Packard Enterprise"}}
