CVE-2022-23399: Buffer Overflow
A stack-based buffer overflow vulnerability exists in the confsrv setportfwdrule functionality of TCL LinkHub Mesh Wifi MS1G0001.0014. A specially-crafted network packet can lead to stack-based buffer overflow. An attacker can send a malicious packet to trigger this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-23399?
CVE-2022-23399 is a stack-based buffer overflow vulnerability in the confsrv set_port_fwd_rule functionality of TCL LinkHub Mesh Wifi MS1G_00_01.00_14.
How severe is CVE-2022-23399?
CVE-2022-23399 has a severity rating of 9.8 out of 10, which is considered critical.
How does CVE-2022-23399 occur?
CVE-2022-23399 occurs when a specially-crafted network packet triggers a stack-based buffer overflow in the confsrv set_port_fwd_rule functionality of TCL LinkHub Mesh Wifi MS1G_00_01.00_14.
Which software versions are affected by CVE-2022-23399?
CVE-2022-23399 affects TCL LinkHub Mesh Wifi MS1G_00_01.00_14.
Is TCL LinkHub Mesh Wifi Ac1200 vulnerable to CVE-2022-23399?
No, TCL LinkHub Mesh Wifi Ac1200 is not vulnerable to CVE-2022-23399.
What is the Common Weakness Enumeration (CWE) ID for CVE-2022-23399?
CVE-2022-23399 is associated with CWE-119, CWE-787, and CWE-121.
Where can I find more information about CVE-2022-23399?
You can find more information about CVE-2022-23399 at the following link: https://talosintelligence.com/vulnerability_reports/TALOS-2022-1454