CVE-2023-25112: Buffer Overflow
Multiple buffer overflow vulnerabilities exist in the vtyshubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to arbitrary code execution. An attacker with high privileges can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the setl2tp function with the remotesubnet and the remotemask variables.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-25112?
CVE-2023-25112 refers to multiple buffer overflow vulnerabilities in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 firmware.
How can a buffer overflow vulnerability be exploited in the vtysh_ubus binary of Milesight UR32L v32.3.0.5?
A specially crafted HTTP request can be used to exploit the buffer overflow vulnerabilities in the vtysh_ubus binary, resulting in arbitrary code execution.
What is the severity of CVE-2023-25112?
CVE-2023-25112 has a severity rating of 7.2, which is considered high.
What software versions are affected by CVE-2023-25112?
Milesight UR32L v32.3.0.5 firmware is affected by CVE-2023-25112.
How can I fix CVE-2023-25112?
To fix CVE-2023-25112, it is recommended to update to a version of Milesight UR32L firmware that does not have this vulnerability.