CVE-2024-50854: High severity tenda g3 firmware vulnerability
Published Nov 13, 2024
·Updated
Tenda G3 v3.0 v15.11.0.20 was discovered to contain a stack overflow via the formSetPortMapping function.
Affected Software
2 affected components
All of the following
Tendacn G3 Firmware=15.11.0.20
Tendacn G3=3.0
Event History
Nov 13, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·03:15 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2024-50854?
CVE-2024-50854 is classified with a high severity due to the potential for remote code execution caused by a stack overflow.
2
How do I fix CVE-2024-50854?
To mitigate CVE-2024-50854, users should upgrade to a patched version of the firmware provided by Tenda that addresses this vulnerability.
3
What are the affected versions for CVE-2024-50854?
CVE-2024-50854 specifically affects Tenda G3 with firmware version 15.11.0.20.
4
Is CVE-2024-50854 exploitable remotely?
Yes, CVE-2024-50854 can be exploited remotely, making it critical for users to apply necessary security measures.
5
What specific function is causing the vulnerability in CVE-2024-50854?
The vulnerability in CVE-2024-50854 is caused by a stack overflow in the formSetPortMapping function.