CVE-2022-24158: High severity Tenda AX3 firmware vulnerability
Published Feb 4, 2022
·Updated
Tenda AX3 v16.03.12.10CN was discovered to contain a stack overflow in the function fromSetIpMacBind. This vulnerability allows attackers to cause a Denial of Service (DoS) via the list parameter.
Affected Software
2 affected components
Tenda AX3 firmware=16.03.12.10_cn
Tenda AX3
Event History
Feb 4, 2022
CVE Published
via MITRE·01:33 AM
Data Sourced
via MITRE·01:33 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2022-24158?
The severity of CVE-2022-24158 is high.
2
What software is affected by CVE-2022-24158?
Tenda AX3 v16.03.12.10_CN firmware is affected by CVE-2022-24158.
3
What is the vulnerability in CVE-2022-24158?
CVE-2022-24158 is a stack overflow vulnerability in the function fromSetIpMacBind in Tenda AX3 v16.03.12.10_CN firmware.
4
How can attackers exploit CVE-2022-24158?
Attackers can exploit CVE-2022-24158 to cause a Denial of Service (DoS) by using the list parameter.
5
Where can I find more information about CVE-2022-24158?
You can find more information about CVE-2022-24158 at the following link: [GitHub - Tenda AX3 v16.03.12.10_CN Stack Overflow](https://github.com/pjqwudi/my_vuln/blob/main/Tenda/vuln_23/23.md)