CVE-2024-50697: Buffer Overflow
In SunGrow WiNet-SV200.001.00.P027 and earlier versions, when decrypting MQTT messages, the code that parses specific TLV fields does not have sufficient bounds checks. This may result in a stack-based buffer overflow.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-50697?
CVE-2024-50697 is classified as a high-severity vulnerability due to the potential for stack-based buffer overflow.
How do I fix CVE-2024-50697?
To fix CVE-2024-50697, update to a version of SunGrow WiNet-SV200 later than 200.001.00.P027.
What products are affected by CVE-2024-50697?
CVE-2024-50697 affects SunGrow WiNet-SV200 versions up to and including 200.001.00.P027.
What is a stack-based buffer overflow in the context of CVE-2024-50697?
In CVE-2024-50697, a stack-based buffer overflow occurs when insufficient bounds checks allow excessive data to overwrite adjacent memory.
What can happen if CVE-2024-50697 is exploited?
Exploitation of CVE-2024-50697 may allow an attacker to execute arbitrary code, leading to system compromise.