CVE-2021-43636

Severity CVSS v4.0:
Pending analysis
Type:
CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
Publication date:
25/03/2022
Last modified:
31/03/2022

Description

Two Buffer Overflow vulnerabilities exists in T10 V2_Firmware V4.1.8cu.5207_B20210320 in the http_request_parse function when processing host data in the HTTP request process.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:totolink:t10_v2_firmware:4.1.8cu.5207_b20210320:*:*:*:*:*:*:*
cpe:2.3:h:totolink:t10_v2:-:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools