CVE-2022-38570: High severity tenda m3 vulnerability
Published Aug 28, 2022
·Updated
Tenda M3 V1.0.0.12(4856) was discovered to contain a stack overflow in the function formDelPushedAd. This vulnerability allows attackers to cause a Denial of Service (DoS) via the adPushUID parameter.
Affected Software
2 affected components
Tenda M3 Firmware=1.0.0.12\(4856\)
Tenda M3
Event History
Aug 28, 2022
CVE Published
via MITRE·04:37 PM
Data Sourced
via MITRE·04:37 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2022-38570?
CVE-2022-38570 has been classified as a Denial of Service (DoS) vulnerability.
2
How do I fix CVE-2022-38570?
To fix CVE-2022-38570, apply any available firmware updates for Tenda M3, specifically version 1.0.0.12(4856) or later.
3
What type of vulnerability is CVE-2022-38570?
CVE-2022-38570 is a stack overflow vulnerability affecting the Tenda M3 firmware.
4
What can attackers do with CVE-2022-38570?
Attackers can exploit CVE-2022-38570 to cause a Denial of Service (DoS) on the affected device.
5
Which devices are affected by CVE-2022-38570?
CVE-2022-38570 specifically affects Tenda M3 devices running firmware version 1.0.0.12(4856).