First published: Wed Aug 30 2023(Updated: )
Tenda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01.bin is vulnerable to Buffer Overflow via function 'sub_34FD0.' In the function, it reads user provided parameters and passes variables to the function without any length checks.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Tenda Ac6 Firmware | =15.03.05.16 | |
Tenda AC6 | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this Tenda AC6 firmware vulnerability is CVE-2023-40845.
CVE-2023-40845 has a severity level of critical, with a severity value of 9.8.
This vulnerability occurs in Tenda AC6 firmware due to a buffer overflow in the 'sub_34FD0' function, where user-provided parameters are read and passed without length checks.
Version 15.03.05.16 of Tenda AC6 firmware is affected by CVE-2023-40845.
No, the Tenda AC6 hardware version 1.0 is not vulnerable to this vulnerability.