Network Locking Issue in OpenWrt's Unified Configuration Library for Motorola Devices
CVE-2019-15513

7.5HIGH

Key Information:

Vendor

Openwrt

Status
Vendor
CVE Published:
23 August 2019

What is CVE-2019-15513?

A vulnerability in OpenWrt's unified configuration library, specifically in how it handles network locking with the SetWanSettings command, can lead to device unresponsiveness. When the command is received, it mishandles the locking mechanism, which may cause affected Motorola devices to experience hangs, leading to service disruptions. Users of these devices should remain vigilant and apply any available patches to prevent potential operational issues.

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.