CVE-2022-24354: TP-Link AC1750 NetUSB Integer Overflow Remote Code Execution Vulnerability
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of TP-Link AC1750 prior to 1.1.4 Build 20211022 rel.59103(5553) routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the NetUSB.ko module. The issue results from the lack of proper validation of user-supplied data, which can result in an integer overflow before allocating a buffer. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-15835.
Other sources
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of TP-Link AC1750 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the NetUSB.ko module. The issue results from the lack of proper validation of user-supplied data, which can result in an integer overflow before allocating a buffer. An attacker can leverage this vulnerability to execute code in the context of root.
— ZDI
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-24354?
CVE-2022-24354 is a vulnerability that allows network-adjacent attackers to execute arbitrary code on TP-Link AC1750 routers.
How severe is CVE-2022-24354?
CVE-2022-24354 has a severity rating of 8.8 out of 10, indicating a high risk.
Which software is affected by CVE-2022-24354?
The TP-Link AC1750 routers with firmware versions prior to 1.1.4 Build 20211022 rel.59103(5553) are affected by CVE-2022-24354.
Is authentication required to exploit CVE-2022-24354?
No, authentication is not required to exploit CVE-2022-24354.
How can CVE-2022-24354 be fixed?
To fix CVE-2022-24354, users should upgrade their TP-Link AC1750 routers to version 1.1.4 Build 20211022 rel.59103(5553) or later.