First published: Mon Oct 28 2024(Updated: )
A vulnerability was found in Tenda AC1206 up to 20241027. It has been classified as critical. This affects the function ate_Tenda_mfg_check_usb/ate_Tenda_mfg_check_usb3 of the file /goform/ate. The manipulation of the argument arg leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Tenda AC1206 firmware | <=2024-10-27 | |
Tenda AC1206 firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-10434 has been classified as a critical vulnerability.
CVE-2024-10434 affects the Tenda AC1206 firmware versions up to 2024-10-27.
CVE-2024-10434 exploits a stack-based buffer overflow via manipulated arguments in the ate_Tenda_mfg_check_usb function.
To fix CVE-2024-10434, update the Tenda AC1206 firmware to a version released after 2024-10-27.
There are no known workarounds for CVE-2024-10434, and upgrading firmware is essential for protection.