CVE-2023-38314: Null Pointer Dereference
An issue was discovered in OpenNDS Captive Portal before version 10.1.2. It has a NULL pointer dereference in preauthenticated() that can be triggered with a crafted GET HTTP request with a missing redirect query string parameter. Triggering this issue results in crashing OpenNDS (a Denial-of-Service condition). Affected OpenNDS Captive Portal before version 10.1.2 fixed infixed in OpenWrt master, OpenWrt 23.05 and OpenWrt 22.03 on28. August 2023 by updating OpenNDS to version 10.1.3.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-38314?
CVE-2023-38314 is a vulnerability in OpenNDS Captive Portal before version 10.1.2 that allows for a NULL pointer dereference in the preauthenticated() function.
What is the severity of CVE-2023-38314?
The severity of CVE-2023-38314 is medium with a CVSS score of 6.5.
How does CVE-2023-38314 affect OpenNDS Captive Portal?
CVE-2023-38314 affects OpenNDS Captive Portal version prior to 10.1.2.
How can CVE-2023-38314 be exploited?
CVE-2023-38314 can be exploited by sending a crafted GET HTTP request with a missing redirect query string parameter to trigger a NULL pointer dereference in the preauthenticated() function, resulting in a denial-of-service (DoS) condition.
How can CVE-2023-38314 be fixed?
To fix CVE-2023-38314, it is recommended to upgrade OpenNDS Captive Portal to version 10.1.2 or later.