CVE-2022-44255: Buffer Overflow
Published Nov 23, 2022
·Updated
TOTOLINK LR350 V9.3.5u.6369B20220309 contains a pre-authentication buffer overflow in the main function via long post data.
Affected Software
4 affected components
TOTOLINK Lr350 Firmware=9.3.5u.6369_b20220309
TOTOLINK LR350
All of the following
TOTOLINK Lr350 Firmware=9.3.5u.6369_b20220309
TOTOLINK LR350
Event History
Nov 23, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2022-44255?
CVE-2022-44255 is a vulnerability found in TOTOLINK LR350 V9.3.5u.6369_B20220309 firmware that allows a pre-authentication buffer overflow via long post data.
2
What is the severity of CVE-2022-44255?
CVE-2022-44255 has a severity rating of 9.8 (Critical).
3
How does CVE-2022-44255 affect TOTOLINK LR350?
CVE-2022-44255 affects TOTOLINK LR350 V9.3.5u.6369_B20220309 firmware.
4
How can the CVE-2022-44255 vulnerability be exploited?
The CVE-2022-44255 vulnerability can be exploited by sending long post data to the device before authentication.
5
Is TOTOLINK LR350 vulnerable to CVE-2022-44255?
Yes, TOTOLINK LR350 V9.3.5u.6369_B20220309 firmware is vulnerable to CVE-2022-44255.