First published: Mon Jul 31 2023(Updated: )
ASUS RT-AX88U's httpd is subject to an unauthenticated DoS condition. A remote attacker can send a specially crafted request to the device which causes the httpd binary to crash within the "do_json_decode()" function of ej.c, resulting in a DoS condition.
Credit: twcert@cert.org.tw twcert@cert.org.tw
Affected Software | Affected Version | How to fix |
---|---|---|
Asus Rt-ax88u Firmware | <3.0.0.4.388.23748 | |
ASUS RT-AX88U |
Update firmware version to 3.0.0.4_388_23748 or latest
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2023-34359.
The severity level of CVE-2023-34359 is high.
This vulnerability affects ASUS RT-AX88U, specifically the firmware version up to 3.0.0.4.388.23748.
A remote attacker can exploit this vulnerability by sending a specially crafted request to ASUS RT-AX88U, causing the httpd binary to crash and resulting in a denial-of-service (DoS) condition.
At the moment, there is no known fix for CVE-2023-34359. It is recommended to follow the vendor's security advisory for updates or patches.