CVE-2024-7439: Vivotek CC8160 httpd read stack-based overflow
UNSUPPORTED WHEN ASSIGNED A vulnerability was found in Vivotek CC8160 VVTK-0100d and classified as critical. Affected by this issue is the function read of the component httpd. The manipulation of the argument Content-Length leads to stack-based buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-273524. NOTE: This vulnerability only affects products that are no longer supported by the maintainer. NOTE: Vendor was contacted early and confirmed that the affected release tree is end-of-life.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-7439?
CVE-2024-7439 is classified as a critical vulnerability.
How do I fix CVE-2024-7439?
To mitigate CVE-2024-7439, it is recommended to update to the latest firmware version provided by Vivotek.
What component is affected by CVE-2024-7439?
CVE-2024-7439 affects the httpd component of the Vivotek CC8160.
What type of vulnerability is CVE-2024-7439?
CVE-2024-7439 is a stack-based buffer overflow vulnerability.
What devices are impacted by CVE-2024-7439?
CVE-2024-7439 impacts the Vivotek CC8160 and its firmware.