Rewterz
Rewterz Threat Advisory – Multiple Microsoft Edge (Chromium-based) Vulnerabilities
August 21, 2023
Rewterz
Rewterz Threat Alert – PatchWork APT Threat Actor Group – Active IOCs
August 21, 2023

Rewterz Threat Advisory – CVE-2023-31710 – TP-Link Archer AX21 Vulnerability

Severity

High

Analysis Summary

CVE-2023-31710

TP-Link Archer AX21 is vulnerable to a heap-based buffer overflow, caused by improper bounds checking by the /usr/lib/libtmpv2.so. By sending a specially crafted request, a remote attacker could overflow a buffer and execute arbitrary code on the system.

Impact

  • Buffer Overflow

Indicators Of Compromise

CVE

  • CVE-2023-31710

Affected Vendors

TP-Link

Affected Products

  • TP-Link Archer AX21(US) 3_1.1.4 Build 20230219
  • TP-Link Archer AX21(US) 3.6_1.1.4 Build 20230219

Remediation

Upgrade to the latest version of TP-Link Archer AX21(US), available from the TP-Link Website.

TP-Link Website