HIGH · 7.2

CVE-2024-32631

Out-of-Bounds read in ciCCIOTOPT in ASR180X will cause incorrect computations.

Vulnerability Description

Out-of-Bounds read in ciCCIOTOPT in ASR180X will cause incorrect computations.

CVSS Score

7.2

HIGH

CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:L/I:L/A:H
Attack Vector
NETWORK
Attack Complexity
HIGH
Privileges Required
HIGH
User Interaction
NONE
Scope
CHANGED
Confidentiality
LOW
Integrity
LOW
Availability
HIGH

Affected Products

VendorProductVersions
AsrmicroAsr3602 Firmware< cp01.057.067
AsrmicroAsr3602-
AsrmicroAsr3605 Firmware< cp01.057.067
AsrmicroAsr3605-
AsrmicroAsr3607 Firmware< cp01.057.067
AsrmicroAsr3607-
AsrmicroAsr1609 Firmware< cp01.057.067
AsrmicroAsr1609-
AsrmicroAsr1605 Firmware< cp01.057.067
AsrmicroAsr1605-
AsrmicroAsr1602 Firmware< cp01.057.067
AsrmicroAsr1602-
AsrmicroAsr1603 Firmware< cp01.057.067
AsrmicroAsr1603-
AsrmicroAsr1606 Firmware< cp01.057.067
AsrmicroAsr1606-
AsrmicroAsr1803 Firmware< cp01.057.067
AsrmicroAsr1803-
AsrmicroAsr1806 Firmware< cp01.057.067
AsrmicroAsr1806-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2024-32631?

CVE-2024-32631 is a vulnerability with a CVSS score of 7.2 (HIGH). Out-of-Bounds read in ciCCIOTOPT in ASR180X will cause incorrect computations.

How severe is CVE-2024-32631?

CVE-2024-32631 has been rated HIGH with a CVSS base score of 7.2/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2024-32631?

Check the references section above for vendor advisories and patch information. Affected products include: Asrmicro Asr3602 Firmware, Asrmicro Asr3602, Asrmicro Asr3605 Firmware, Asrmicro Asr3605, Asrmicro Asr3607 Firmware.