Firmware Update Vulnerability in Alcatel-Lucent ALE NOE and SIP Deskphones
CVE-2024-29149

Currently unrated

Key Information:

Vendor
CVE Published:
7 May 2024

What is CVE-2024-29149?

A vulnerability has been identified in Alcatel-Lucent ALE NOE and SIP deskphones that allows authenticated attackers to exploit a time-of-check time-of-use weakness. This flaw enables the attacker to replace a verified firmware image with malicious firmware during the update process, potentially compromising the integrity and functionality of the affected devices. The vulnerable versions include 86x8_NOE-R300.1.40.12.4180 and 86x8_SIP-R200.1.01.10.728. Users are strongly advised to implement recommended security measures to mitigate this risk.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.