First published: Tue May 24 2022(Updated: )
Totolink A3600R V4.1.2cu.5182_B20201102 was discovered to contain a stacker overflow in the fread function at infostat.cgi. This vulnerability allows attackers to cause a Denial of Service (DoS) via the parameter CONTENT_LENGTH.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Totolink A3600r Firmware | =4.1.2cu.5182_b20201102 | |
TOTOLink A3600R |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-29377 is classified as a high severity vulnerability due to its potential to cause a Denial of Service.
To fix CVE-2022-29377, update the Totolink A3600R firmware to the latest version that addresses this vulnerability.
CVE-2022-29377 allows attackers to exploit a stack overflow vulnerability, potentially leading to a Denial of Service condition on affected devices.
CVE-2022-29377 specifically affects the Totolink A3600R firmware version 4.1.2cu.5182_B20201102.
The hardware Totolink A3600R itself is not inherently vulnerable; the vulnerability lies in a specific firmware version.