A buffer overflow vulnerability in the “sdwan_iface_ipc” binary of Zyxel ATP series firmware versions 5.10 through 5.32, USG FLEX series firmware versions 5.00 through 5.32, USG FLEX 50(W) firmware versions 5.10 through 5.32, USG20(W)-VPN firmware versions 5.10 through 5.32, and VPN series firmware versions 5.00 through 5.35, which could allow a remote unauthenticated attacker to cause a core dump with a request error message on a vulnerable device by uploading a crafted configuration file.
Metrics
Affected Vendors & Products
References
History
Wed, 12 Feb 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: Zyxel
Published: 2023-04-24T00:00:00.000Z
Updated: 2025-02-12T16:02:01.734Z
Reserved: 2023-01-10T00:00:00.000Z
Link: CVE-2023-22917
Updated: 2024-08-02T10:20:31.383Z
Status : Modified
Published: 2023-04-24T17:15:09.833
Modified: 2024-11-21T07:45:38.780
Link: CVE-2023-22917
No data.