CVE-2024-7152: Tenda O3 setMacFilterList fromSafeSetMacFilter stack-based overflow
A vulnerability was found in Tenda O3 1.0.0.10(2478). It has been rated as critical. This issue affects the function fromSafeSetMacFilter of the file /goform/setMacFilterList. The manipulation of the argument time leads to stack-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-272555. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-7152?
CVE-2024-7152 has been rated as critical due to its potential for remote exploitation and causing stack-based buffer overflow.
How do I fix CVE-2024-7152?
To mitigate CVE-2024-7152, update the Tenda O3 firmware to the latest version that addresses this vulnerability.
What type of vulnerability is CVE-2024-7152?
CVE-2024-7152 is a stack-based buffer overflow vulnerability.
Which Tenda devices are affected by CVE-2024-7152?
CVE-2024-7152 affects the Tenda O3 firmware version 1.0.0.10(2478).
What is the exploit method for CVE-2024-7152?
The exploit for CVE-2024-7152 can be initiated remotely via manipulation of arguments in the function fromSafeSetMacFilter.