CVE-2023-44838

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Oct 5, 2023
Updated: Oct 6, 2023
CWE ID 120

Summary

CVE-2023-44838 is a newly disclosed vulnerability affecting the D-Link DIR-823G A1V1.0.2B05 router. The issue lies in the SetWLanRadioSettings function, which contains a buffer overflow vulnerability. This flaw can be exploited by attackers through the TXPower parameter, resulting in a Denial of Service (DoS) condition. The buffer overflow occurs when the function fails to validate user input, allowing malicious data to be written beyond the intended buffer boundaries. This vulnerability poses a significant risk to networks utilizing this specific D-Link model and highlights the importance of regular software updates to mitigate potential threats.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share