Vulnerability Description
Buffer overflow in the PPP Access Concentrator (PPPAC) on the SEIL/x86 with firmware 1.00 through 1.61, SEIL/B1 with firmware 1.00 through 3.11, SEIL/X1 with firmware 1.00 through 3.11, SEIL/X2 with firmware 1.00 through 3.11, SEIL/Turbo with firmware 1.80 through 2.10, and SEIL/neu 2FE Plus with firmware 1.80 through 2.10 might allow remote attackers to execute arbitrary code via a PPPoE packet.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Iij | Seil\/B1 Firmware | 1.00 |
| Iij | Seil\/B1 | All versions |
| Iij | Seil\/X1 Firmware | 1.00 |
| Iij | Seil\/X1 | All versions |
| Iij | Seil\/X2 Firmware | 1.00 |
| Iij | Seil\/X2 | All versions |
| Iij | Seil\/X86 Firmware | 1.00 |
| Iij | Seil\/X86 | All versions |
| Iij | Seil\/Turbo Firmware | 1.80 |
| Iij | Seil\/Turbo | All versions |
| Iij | Seil\/Neu 2Fe Plus Firmware | 1.80 |
| Iij | Seil\/Neu 2Fe Plus | All versions |
Related Weaknesses (CWE)
References
- http://jvn.jp/en/jp/JVN88991166/index.html
- http://jvndb.jvn.jp/jvndb/JVNDB-2011-000014
- http://secunia.com/advisories/43494Vendor Advisory
- http://www.securityfocus.com/bid/46598
- http://www.seil.jp/support/security/a01001.htmlVendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/65672
- http://jvn.jp/en/jp/JVN88991166/index.html
- http://jvndb.jvn.jp/jvndb/JVNDB-2011-000014
- http://secunia.com/advisories/43494Vendor Advisory
- http://www.securityfocus.com/bid/46598
- http://www.seil.jp/support/security/a01001.htmlVendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/65672
FAQ
What is CVE-2011-0454?
CVE-2011-0454 is a vulnerability with a CVSS score of 8.3 (HIGH). Buffer overflow in the PPP Access Concentrator (PPPAC) on the SEIL/x86 with firmware 1.00 through 1.61, SEIL/B1 with firmware 1.00 through 3.11, SEIL/X1 with firmware 1.00 through 3.11, SEIL/X2 with f...
How severe is CVE-2011-0454?
CVE-2011-0454 has been rated HIGH with a CVSS base score of 8.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2011-0454?
Check the references section above for vendor advisories and patch information. Affected products include: Iij Seil\/B1 Firmware, Iij Seil\/B1, Iij Seil\/X1 Firmware, Iij Seil\/X1, Iij Seil\/X2 Firmware.