CVE-2022-40112: Buffer Overflow
TOTOLINK A3002R TOTOLINK-A3002R-He-V1.1.1-B20200824.0128 is vulnerable Buffer Overflow via the hostname parameter in binary /bin/boa.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-40112?
CVE-2022-40112 refers to a vulnerability found in TOTOLINK A3002R firmware version 1.1.1-b20200824.0128, which allows for a buffer overflow via the hostname parameter in binary /bin/boa.
What is the severity of CVE-2022-40112?
CVE-2022-40112 has a severity rating of 7.5 (High).
How does CVE-2022-40112 affect TOTOLINK A3002R?
CVE-2022-40112 affects TOTOLINK A3002R firmware version 1.1.1-b20200824.0128 by allowing a buffer overflow attack via the hostname parameter in binary /bin/boa.
How can I fix CVE-2022-40112?
To fix CVE-2022-40112, it is recommended to update the TOTOLINK A3002R firmware to a version that is not vulnerable.
Where can I find more information about CVE-2022-40112?
You can find more information about CVE-2022-40112 at the following reference link: [GitHub - TOTOLINK A3002R CVE-2022-40112](https://github.com/1759134370/iot/blob/main/TOTOLINK/A3002R/3.md).