CVE-2024-28283: Buffer Overflow
Published Mar 19, 2024
·Updated
There is stack-based buffer overflow vulnerability in pcchangeact function in Linksys E1000 router firmware version v.2.1.03 and before, leading to remote code execution.
Affected Software
3 affected components
LinkSys E1000 router firmware<2.1.03
All of the following
LinkSys E1000 Firmware<=2.1.03
LinkSys E1000
Event History
Mar 19, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·09:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-28283?
The severity of CVE-2024-28283 is critical due to the potential for remote code execution.
2
How do I fix CVE-2024-28283?
To fix CVE-2024-28283, update your Linksys E1000 router firmware to version 2.1.04 or later.
3
What causes CVE-2024-28283?
CVE-2024-28283 is caused by a stack-based buffer overflow in the pc_change_act function.
4
Who is affected by CVE-2024-28283?
Anyone using Linksys E1000 router firmware version 2.1.03 or earlier is affected by CVE-2024-28283.
5
What is the impact of CVE-2024-28283?
The impact of CVE-2024-28283 can lead to unauthorized remote code execution, compromising the security of the router.