CVE-2022-44259: Buffer Overflow
Published Nov 23, 2022
·Updated
TOTOLINK LR350 V9.3.5u.6369B20220309 contains a post-authentication buffer overflow via parameter week, sTime, and eTime in the setParentalRules function.
Affected Software
4 affected components
TOTOLINK Lr350 Firmware=9.3.5u.6369_b20220309
TOTOLINK LR350
All of the following
TOTOLINK Lr350 Firmware=9.3.5u.6369_b20220309
TOTOLINK LR350
Event History
Nov 23, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID of this TOTOLINK LR350 vulnerability?
The vulnerability ID of this TOTOLINK LR350 vulnerability is CVE-2022-44259.
2
What is the severity of CVE-2022-44259?
The severity of CVE-2022-44259 is high with a CVSS score of 8.8.
3
How does CVE-2022-44259 affect TOTOLINK LR350 firmware 9.3.5u.6369_b20220309?
CVE-2022-44259 affects TOTOLINK LR350 firmware 9.3.5u.6369_b20220309 through a post-authentication buffer overflow via the 'week', 'sTime', and 'eTime' parameters in the 'setParentalRules' function.
4
Is TOTOLINK LR350 vulnerable to CVE-2022-44259?
No, TOTOLINK LR350 is not vulnerable to CVE-2022-44259.
5
How can I fix CVE-2022-44259 in TOTOLINK LR350 firmware 9.3.5u.6369_b20220309?
There is no official fix available for CVE-2022-44259 in TOTOLINK LR350 firmware 9.3.5u.6369_b20220309 at this time. It is recommended to monitor the vendor's website for any updates or patches.