CVE-2022-31810: Buffer Overflow
A vulnerability has been identified in SiPass integrated (All versions < V2.90.3.8). Affected server applications improperly check the size of data packets received for the configuration client login, causing a stack-based buffer overflow. This could allow an unauthenticated remote attacker to crash the server application, creating a denial of service condition.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this SiPass integrated vulnerability?
The vulnerability ID for this SiPass integrated vulnerability is CVE-2022-31810.
What is the severity of CVE-2022-31810?
The severity of CVE-2022-31810 is high.
Which versions of SiPass integrated are affected by this vulnerability?
All versions of SiPass integrated prior to V2.90.3.8 are affected by this vulnerability.
What is the impact of this vulnerability?
This vulnerability could allow an unauthenticated remote attacker to cause a stack-based buffer overflow.
Is there a fix available for CVE-2022-31810?
Yes, upgrading to version V2.90.3.8 or later of SiPass integrated will fix this vulnerability.