PT-2020-14957 · Microhard · Microhard Bullet-Lte

Headlesszeke

+1

·

Published

2020-08-26

·

Updated

2020-10-26

·

CVE-2020-17407

CVSS v2.0

10

Critical

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Microhard Bullet-LTE versions prior to 1.2.0-r1112
Description This issue allows remote attackers to execute arbitrary code on affected installations. Authentication is not required to exploit this issue. The flaw exists within the handling of authentication headers, specifically due to the lack of proper validation of the length of user-supplied data prior to copying it to a fixed-length stack-based buffer. An attacker can leverage this issue to execute code in the context of root.
Recommendations For versions prior to 1.2.0-r1112, update to version 1.2.0-r1112 or later to resolve the issue. As a temporary workaround, consider restricting access to the authentication headers handling mechanism until a patch is available.

Fix

Stack Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2020-17407
ZDI-20-1206

Affected Products

Microhard Bullet-Lte