There is a stack-based buffer overflow on some Tenda routers (FH1202/F1202/F1200: versions before 1.2.0.20). Crafted POST requests to an unspecified URL result in DoS, interrupting the HTTP service (used to login to the web UI of a router) for 1 to 2 seconds.
References
Link | Resource |
---|---|
http://www.tendacn.com/en/2017.html | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
Configuration 3 (hide)
AND |
|
Information
Published : 2017-05-21 15:29
Updated : 2017-06-02 12:03
NVD link : CVE-2017-9139
Mitre link : CVE-2017-9139
JSON object : View
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer
Products Affected
tendacn
- f1200
- fh1202_firmware
- f1202_firmware
- f1202
- f1200_firmware
- fh1202