CVE-2022-23919: Buffer Overflow
A stack-based buffer overflow vulnerability exists in the confsrv setmfrule functionality of TCL LinkHub Mesh Wifi MS1G0001.0014. A specially-crafted network packet can lead to stack-based buffer overflow. An attacker can send a malicious packet to trigger this vulnerability.This vulnerability leverages the name field within the protobuf message to cause a buffer overflow.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-23919?
CVE-2022-23919 is a stack-based buffer overflow vulnerability in the confsrv set_mf_rule functionality of TCL LinkHub Mesh Wifi MS1G_00_01.00_14.
What is the severity of CVE-2022-23919?
The severity of CVE-2022-23919 is critical with a severity value of 9.8.
Which software is affected by CVE-2022-23919?
The TCL LinkHub Mesh Wifi MS1G_00_01.00_14 software is affected by CVE-2022-23919.
How does CVE-2022-23919 occur?
CVE-2022-23919 occurs when a specially-crafted network packet triggers a stack-based buffer overflow in the confsrv set_mf_rule functionality of TCL LinkHub Mesh Wifi MS1G_00_01.00_14.
Is there a fix for CVE-2022-23919?
At the moment, there is no information available regarding a fix for CVE-2022-23919. It is recommended to follow the vendor's security advisory for updates.