CVE-2022-24018: Buffer Overflow
A buffer overflow vulnerability exists in the GetValue functionality of TCL LinkHub Mesh Wi-Fi MS1G0001.0014. A specially-crafted configuration value can lead to a buffer overflow. An attacker can modify a configuration value to trigger this vulnerability.This vulnerability represents all occurances of the buffer overflow vulnerability within the multiWAN binary.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-24018?
CVE-2022-24018 is classified as a buffer overflow vulnerability that can lead to severe impacts if exploited.
How do I fix CVE-2022-24018?
To fix CVE-2022-24018, ensure that your TCL LinkHub Mesh Wi-Fi device is updated to the latest firmware version, specifically above ms1g_00_01.00_14.
Which devices are affected by CVE-2022-24018?
CVE-2022-24018 affects the TCL LinkHub Mesh Wi-Fi devices running firmware version ms1g_00_01.00_14.
What can an attacker do with CVE-2022-24018?
An attacker can exploit CVE-2022-24018 by sending specially-crafted configuration values to trigger a buffer overflow.
Is there a workaround for CVE-2022-24018?
Currently, the best workaround for CVE-2022-24018 is to monitor the configuration settings and restrict unauthorized access until a patch is applied.