Vulnerability Description
An issue was discovered in WinAPRS 2.9.0. A buffer overflow in national.txt processing allows a local attacker to cause a denial of service or possibly achieve code execution. NOTE: This vulnerability only affects products that are no longer supported by the maintainer
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Winaprs | Winaprs | 2.9.0 |
Related Weaknesses (CWE)
References
- https://winaprs.com/Product
- https://www.coalfire.com/the-coalfire-blog/hacking-ham-radio-winaprs-part1ExploitThird Party Advisory
- https://winaprs.com/Product
- https://www.coalfire.com/the-coalfire-blog/hacking-ham-radio-winaprs-part1ExploitThird Party Advisory
FAQ
What is CVE-2022-24701?
CVE-2022-24701 is a vulnerability with a CVSS score of 7.8 (HIGH). An issue was discovered in WinAPRS 2.9.0. A buffer overflow in national.txt processing allows a local attacker to cause a denial of service or possibly achieve code execution. NOTE: This vulnerability...
How severe is CVE-2022-24701?
CVE-2022-24701 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2022-24701?
Check the references section above for vendor advisories and patch information. Affected products include: Winaprs Winaprs.