Check Point Advisories

Tenda AC Routers Buffer Overflow (CVE-2022-30472; CVE-2022-30476; CVE-2022-30477; CVE-2022-38309; CVE-2022-38310; CVE-2022-38311; CVE-2022-38312; CVE-2022-38313; CVE-2022-38314; CVE-2022-40854; CVE-2023-37711; CVE-2023-38823; CVE-2023-45479; CVE-2023-4744)

Check Point Reference: CPAI-2022-0974
Date Published: 4 Dec 2022
Severity: Critical
Last Updated: Thursday 10 October, 2024
Source:
Industry Reference:CVE-2022-30472
CVE-2022-30476
CVE-2022-30477
CVE-2022-38309
CVE-2022-38310
CVE-2022-38311
CVE-2022-38312
CVE-2022-38313
CVE-2022-38314
CVE-2022-40854
CVE-2023-37711
CVE-2023-38823
CVE-2023-45479
CVE-2023-4744
Protection Provided by:

Security Gateway
R81, R80, R77, R75

Who is Vulnerable? Tenda AC18 V15.03.05.19(6318)
Tenda AC18 v15.03.05.05
Tenda AC10 version US_AC10V4.0si_V16.03.10.13_cn
Tenda Ac19 v.1.0
Tenda AC15 15.03.05.18
Tenda AC15 15.03.20_multi
Tenda AC15 15.03.05.18/15.03.05.19/15.03.20
Tenda AC10 16.03.10.13/16.03.10.20
Tenda AC18
Tenda AC9 v.1.0
Tenda AC6 v.1.0 to v.2.0
Tenda AC8 16.03.34.06
Tenda AC8 4.0
Tenda AC9 V3.0 V15.03.06.42_multi
Tenda AC9 V1.0 up to V15.03.05.19(6318)
Tenda AC8 v4 US_AC8V4.0si_V16.03.34.06_cn
Tenda AC10V4 v.US_AC10V4.0si_V16.03.10.13_cn_TDC01
Tenda AC5 US_AC5V1.0RTL_V15.03.06.28
Tenda AC1206 V15.03.06.23
Tenda AC10 V15.03.06.47
Tenda AC18 15.13.07.09

Tenda AC18 15.03.05.05
Vulnerability Description A buffer overflow vulnerability exists in Tenda AC routers. Successful exploitation of this vulnerability could result in a denial of service or execution of arbitrary code into the affected system.

Protection Overview

This protection detects attempts to exploit this vulnerability.

In order for the protection to be activated, update your Security Gateway product to the latest IPS update. For information on how to update IPS, go to SBP-2006-05, click on Protection tab and select the version of your choice.

Security Gateway R81 / R80 / R77 / R75

  1. In the IPS tab, click Protections and find the Tenda AC Routers Buffer Overflow protection using the Search tool and Edit the protection's settings.
  2. Install policy on all Security Gateways.

This protection's log will contain the following information:

Attack Name:  Application Servers Protection Violation.
Attack Information:  Tenda AC Routers Buffer Overflow

×
  Feedback
This website uses cookies for its functionality and for analytics and marketing purposes. By continuing to use this website, you agree to the use of cookies. For more information, please read our Cookies Notice.
OK