Security Advisory

CVE-2017-14445

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-08-02 19:00:00
Last updated 2024-08-05 19:27:40
Assigner talos
State PUBLISHED

Description

An exploitable buffer overflow vulnerability exists in Insteon Hub running firmware version 1012. The HTTP server implementation incorrectly handles the host parameter during a firmware update request, leading to a buffer overflow on a global section. An attacker can send an HTTP GET request to trigger this vulnerability.