Buffer Overflow Vulnerability Affects OnCell G3470A-LTE Series Firmware

CVE-2024-4640
8.2HIGH

Key Information

Vendor
Moxa
Status
Oncell G3150a-lte Series
Vendor
CVE Published:
25 June 2024

Summary

OnCell G3470A-LTE Series firmware versions v1.7.7 and prior have been identified as vulnerable due to missing bounds checking on buffer operations. An attacker could write past the boundaries of allocated buffer regions in memory, causing a program crash.

Affected Version(s)

OnCell G3150A-LTE Series <= 1.7.7

CVSS V3.1

Score:
8.2
Severity:
HIGH
Confidentiality:
None
Integrity:
Low
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published.

  • Vulnerability Reserved.

Collectors

NVD DatabaseMitre Database

Credit

Nikita Abramov from Positive Technologies
.