First published: Fri Aug 21 2020(Updated: )
Multiple buffer overflow vulnerabilities exist in the AceManager Web API of ALEOS before 4.13.0, 4.9.5, and 4.4.9.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Sierrawireless Aleos | <=4.12.0 | |
Sierrawireless Airlink Lx40 | ||
Sierrawireless Airlink Lx60 | ||
Sierrawireless Airlink Mp70 | ||
Sierrawireless Airlink Mp70e | ||
Sierrawireless Airlink Rv50 | ||
Sierrawireless Airlink Rv50x | ||
Sierrawireless Aleos | <=4.9.4 | |
Sierrawireless Airlink Es450 | ||
Sierrawireless Airlink Gx450 | ||
Sierrawireless Aleos | <=4.4.8 | |
Sierrawireless Airlink Es440 | ||
Sierrawireless Airlink Gx400 | ||
Sierrawireless Airlink Gx440 | ||
Sierrawireless Airlink Ls300 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-11858 is a vulnerability that exists in the AceManager Web API of ALEOS before versions 4.13.0, 4.9.5, and 4.4.9.
CVE-2019-11858 has a severity rating of high.
The affected software for CVE-2019-11858 includes Sierra Wireless Aleos versions up to 4.12.0.
To fix CVE-2019-11858, update your Sierra Wireless Aleos software to version 4.13.0, 4.9.5, or 4.4.9.
You can find more information about CVE-2019-11858 in the Sierra Wireless Technical Bulletin - SWI-PSA-2020-004.