CVE-2022-44254: Buffer Overflow
Published Nov 23, 2022
·Updated
TOTOLINK LR350 V9.3.5u.6369B20220309 contains a post-authentication buffer overflow via parameter text in the setSmsCfg function.
Affected Software
4 affected components
TOTOLINK Lr350 Firmware=9.3.5u.6369_b20220309
TOTOLINK LR350
All of the following
TOTOLINK Lr350 Firmware=9.3.5u.6369_b20220309
TOTOLINK LR350
Event History
Nov 23, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this TOTOLINK LR350 vulnerability?
The vulnerability ID for this TOTOLINK LR350 vulnerability is CVE-2022-44254.
2
What is the title of this TOTOLINK LR350 vulnerability?
The title of this TOTOLINK LR350 vulnerability is 'TOTOLINK LR350 V9.3.5u.6369_B20220309 contains a post-authentication buffer overflow via parameter text in the setSmsCfg function.'
3
What is the severity of CVE-2022-44254?
The severity of CVE-2022-44254 is high with a severity value of 8.8.
4
Which software version is affected by CVE-2022-44254?
TOTOLINK LR350 V9.3.5u.6369_B20220309 is the affected software version for CVE-2022-44254.
5
How can I fix the CVE-2022-44254 vulnerability?
To fix the CVE-2022-44254 vulnerability, update to a patched version of the Totolink LR350 firmware.