PT-2017-16839 · Fatek · Ether Cfg+3

Publicado

2017-03-16

·

Atualizado

2021-10-28

·

CVE-2017-6023

CVSS v3.1

9.8

Crítica

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Fatek CBEH versions prior to V3.6 Build 170215 Fatek CBE versions prior to V3.6 Build 170215 Fatek CM55E versions prior to V3.6 Build 170215 Fatek CM25E versions prior to V3.6 Build 170215
Description A stack-based buffer overflow issue has been identified in the Ether cfg software configuration tool, which may allow remote code execution or cause the affected device to crash.
Recommendations For Fatek CBEH versions prior to V3.6 Build 170215, update to version V3.6 Build 170215 or later. For Fatek CBE versions prior to V3.6 Build 170215, update to version V3.6 Build 170215 or later. For Fatek CM55E versions prior to V3.6 Build 170215, update to version V3.6 Build 170215 or later. For Fatek CM25E versions prior to V3.6 Build 170215, update to version V3.6 Build 170215 or later.

Correção

Stack Overflow

Buffer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2017-6023
ZDI-17-465

Produtos afetados

Ether Cfg
Fatek Cbe
Fatek Cm25E
Fatek Cm55E