CVE-2024-32632: Printf arg type mismatch in ATCMD
A value in ATCMD will be misinterpreted by printf, causing incorrect output and possibly out-of-bounds memory access
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-32632?
CVE-2024-32632 has a medium severity rating due to its potential for incorrect output and out-of-bounds memory access.
How do I fix CVE-2024-32632?
To fix CVE-2024-32632, update the affected firmware to versions beyond cp01.057.067 for all impacted Asrmicro devices.
Which software versions are affected by CVE-2024-32632?
CVE-2024-32632 affects all Asrmicro firmware versions prior to cp01.057.067 on various models including ASR1803, ASR1607, and ASR3603.
What devices are impacted by CVE-2024-32632?
Devices impacted by CVE-2024-32632 include ASR1602, ASR1603, ASR1605, ASR1606, ASR1609, ASR1803, ASR1806, ASR3602, ASR3603, ASR3605, ASR3606, and ASR3607 firmware.
What type of vulnerability is CVE-2024-32632?
CVE-2024-32632 is a format string vulnerability that can lead to incorrect output and possible memory access issues.