mirror of
https://github.com/0xMarcio/cve.git
synced 2025-05-05 18:27:17 +00:00
1.2 KiB
1.2 KiB
CVE-2024-7490
Description
** UNSUPPPORTED WHEN ASSIGNED ** Improper Input Validation vulnerability in Microchip Techology Advanced Software Framework example DHCP server can cause remote code execution through a buffer overflow. This vulnerability is associated with program files tinydhcpserver.C and program routines lwip_dhcp_find_option.This issue affects Advanced Software Framework: through 3.52.0.2574.ASF is no longer being supported. Apply provided workaround or migrate to an actively maintained framework.
POC
Reference
No PoCs from references.