PT-2017-16839 · Fatek · Ether Cfg+3

Published

2017-03-16

·

Updated

2021-10-28

·

CVE-2017-6023

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Fatek CBEH versions prior to V3.6 Build 170215 Fatek CBE versions prior to V3.6 Build 170215 Fatek CM55E versions prior to V3.6 Build 170215 Fatek CM25E versions prior to V3.6 Build 170215
Description A stack-based buffer overflow issue has been identified in the Ether cfg software configuration tool, which may allow remote code execution or cause the affected device to crash.
Recommendations For Fatek CBEH versions prior to V3.6 Build 170215, update to version V3.6 Build 170215 or later. For Fatek CBE versions prior to V3.6 Build 170215, update to version V3.6 Build 170215 or later. For Fatek CM55E versions prior to V3.6 Build 170215, update to version V3.6 Build 170215 or later. For Fatek CM25E versions prior to V3.6 Build 170215, update to version V3.6 Build 170215 or later.

Fix

Stack Overflow

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2017-6023
ZDI-17-465

Affected Products

Ether Cfg
Fatek Cbe
Fatek Cm25E
Fatek Cm55E