CVE-2023-49595: Buffer Overflow
A stack-based buffer overflow vulnerability exists in the boa rollbackcontrolcode functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially crafted series of network requests can lead to arbitrary code execution. An attacker can send a sequence of requests to trigger this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-49595?
CVE-2023-49595 has a high severity due to its potential for arbitrary code execution through stack-based buffer overflow.
How do I fix CVE-2023-49595?
To fix CVE-2023-49595, update your Realtek rtl819x Jungle SDK to version 3.4.11 or apply any provided patches.
Which software versions are affected by CVE-2023-49595?
CVE-2023-49595 affects Realtek rtl819x Jungle SDK version 3.4.11 and Level1 Wbr-6013 firmware version rer4_a_v3411b_2t2r_lev_09_170623.
Can CVE-2023-49595 lead to remote exploitation?
Yes, CVE-2023-49595 can be exploited remotely by sending specially crafted network requests.
Is there a workaround for CVE-2023-49595?
No specific workarounds are provided for CVE-2023-49595; applying updates remains the best mitigation.