CVE-2023-50985: Buffer Overflow
Published Dec 20, 2023
·Updated
Tenda i29 v1.0 V1.0.0.5 was discovered to contain a buffer overflow via the lanGw parameter in the lanCfgSet function.
Affected Software
3 affected components
All of the following
Any of the following
Tenda I29 Firmware=1.0.0.2
Tenda I29 Firmware=1.0.0.5
Tenda i29=1.0
Event History
Dec 20, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·10:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-50985?
CVE-2023-50985 has a critical severity level due to the potential for remote code execution via buffer overflow.
2
How do I fix CVE-2023-50985?
To fix CVE-2023-50985, update the Tenda i29 firmware to the latest version available from the official Tenda website.
3
What devices are affected by CVE-2023-50985?
CVE-2023-50985 affects Tenda i29 firmware versions 1.0.0.2 and 1.0.0.5.
4
Can CVE-2023-50985 be exploited remotely?
Yes, CVE-2023-50985 can be exploited remotely due to the buffer overflow in the lanCfgSet function.
5
Is there a patch available for CVE-2023-50985?
A patch for CVE-2023-50985 is included in the latest firmware updates from Tenda.