First published: Tue Jul 09 2024(Updated: )
Vulnerability in Tenda AC8v4 .V16.03.34.09 due to sscanf and the last digit of s8 being overwritten with \x0. After executing set_client_qos, control over the gp register can be obtained.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Tenda AC8v4 Firmware | =16.03.34.09 | |
Tenda AC8v4 firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-48194 has a high severity rating due to its potential to allow attackers to gain control over the gp register.
To fix CVE-2023-48194, update your Tenda AC8v4 firmware to the latest version available.
CVE-2023-48194 affects the Tenda AC8v4 firmware version 16.03.34.09.
CVE-2023-48194 is a memory corruption vulnerability that arises from improper handling of input in the sscanf function.
Yes, CVE-2023-48194 can potentially be exploited remotely if the affected firmware is accessible.