In SunGrow WiNet-SV200.001.00.P027 and earlier versions,...
Critical severity
Unreviewed
Published
Jan 25, 2025
to the GitHub Advisory Database
•
Updated Feb 5, 2025
Description
Published by the National Vulnerability Database
Jan 24, 2025
Published to the GitHub Advisory Database
Jan 25, 2025
Last updated
Feb 5, 2025
In SunGrow WiNet-SV200.001.00.P027 and earlier versions, when copying the timestamp read from an MQTT message, the underlying code does not check the bounds of the buffer that is used to store the message. This may lead to a stack-based buffer overflow.
References