CVE-2022-24016: Buffer Overflow
A buffer overflow vulnerability exists in the GetValue functionality of TCL LinkHub Mesh Wi-Fi MS1G0001.0014. A specially-crafted configuration value can lead to a buffer overflow. An attacker can modify a configuration value to trigger this vulnerability.This vulnerability represents all occurances of the buffer overflow vulnerability within the meshstatuscheck binary.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-24016?
CVE-2022-24016 is considered a critical vulnerability due to the potential for remote code execution resulting from a buffer overflow.
How do I fix CVE-2022-24016?
To mitigate CVE-2022-24016, update the TCL LinkHub Mesh Wi-Fi device to the latest firmware version that addresses the buffer overflow issue.
What is the impact of CVE-2022-24016?
The impact of CVE-2022-24016 includes potential unauthorized access and control over the affected device through exploitation of the buffer overflow.
Which devices are affected by CVE-2022-24016?
CVE-2022-24016 affects the TCL LinkHub Mesh Wi-Fi model AC1200 with firmware version ms1g_00_01.00_14.
Can CVE-2022-24016 be exploited remotely?
Yes, CVE-2022-24016 can be exploited remotely if an attacker can send specially-crafted configuration values to the affected device.