CVE-2019-13129

On the Motorola router CX2L MWR04L 1.01, there is a stack consumption (infinite recursion) issue in scopd via TCP port 8010 and UDP port 8080. It is caused by snprintf and inappropriate length handling.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:motorola:cx2l_mwr04l_firmware:1.01:*:*:*:*:*:*:*
cpe:2.3:h:motorola:cx2l_mwr04l:-:*:*:*:*:*:*:*

History

21 Nov 2024, 04:24

Type Values Removed Values Added
References () https://github.com/TeamSeri0us/pocs/blob/master/iot/morouter/morouter_stackoverflow.pdf - Exploit, Third Party Advisory () https://github.com/TeamSeri0us/pocs/blob/master/iot/morouter/morouter_stackoverflow.pdf - Exploit, Third Party Advisory

Information

Published : 2019-07-01 15:15

Updated : 2024-11-21 04:24


NVD link : CVE-2019-13129

Mitre link : CVE-2019-13129

CVE.ORG link : CVE-2019-13129


JSON object : View

Products Affected

motorola

  • cx2l_mwr04l
  • cx2l_mwr04l_firmware
CWE
CWE-674

Uncontrolled Recursion