CVE-2024-44558: Critical severity tenda ax1806 firmware vulnerability
Published Aug 26, 2024
·Updated
Tenda AX1806 v1.0.0.1 contains a stack overflow via the adv.iptv.stbpvid parameter in the function setIptvInfo.
Affected Software
2 affected components
All of the following
Tenda Ax1806 Firmware=1.0.0.1
Tenda AX1806
Event History
Aug 26, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·01:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-44558?
The severity of CVE-2024-44558 is classified as high due to the potential for a stack overflow.
2
What impact does CVE-2024-44558 have on Tenda AX1806 devices?
CVE-2024-44558 can allow remote attackers to execute arbitrary code or cause a denial of service on vulnerable Tenda AX1806 devices.
3
How do I fix CVE-2024-44558?
To fix CVE-2024-44558, update the Tenda AX1806 firmware to a patched version that addresses the vulnerability.
4
Is Tenda AX1806 firmware version 1.0.0.1 affected by CVE-2024-44558?
Yes, Tenda AX1806 firmware version 1.0.0.1 is vulnerable to CVE-2024-44558.
5
What is the cause of the vulnerability in CVE-2024-44558?
The vulnerability in CVE-2024-44558 is caused by a stack overflow in the function setIptvInfo via the adv.iptv.stbpvid parameter.