CVE-2017-10897: Input Validation
Published Dec 8, 2017
·Updated
Input validation issue in Buffalo BBR-4HG and and BBR-4MG broadband routers with firmware 1.00 to 1.48 and 2.00 to 2.07 allows an attacker to cause the device to become unresponsive via unspecified vectors.
Affected Software
6 affected components
Buffalo Bbr-4mg Firmware>=1.00<=1.48
Buffalo Bbr-4mg Firmware>=2.00<=2.07
Buffalo BBR-4MG
Buffalo Bbr-4hg Firmware>=1.00<=1.48
Buffalo Bbr-4hg Firmware>=2.00<=2.07
Buffalo BBR-4HG
Remediation
Patch Available
Event History
Dec 8, 2017
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2017-10897.
2
What is the severity of CVE-2017-10897?
The severity of CVE-2017-10897 is medium with a CVSS score of 4.5.
3
Which Buffalo routers are affected by CVE-2017-10897?
Buffalo BBR-4HG and BBR-4MG broadband routers with firmware versions 1.00 to 1.48 and 2.00 to 2.07 are affected by CVE-2017-10897.
4
How does CVE-2017-10897 allow an attacker to cause the device to become unresponsive?
CVE-2017-10897 allows an attacker to cause the device to become unresponsive via unspecified vectors.
5
Is there a fix for CVE-2017-10897?
Yes, updating the firmware of the Buffalo BBR-4HG and BBR-4MG routers to version 2.08 or later will fix CVE-2017-10897.