Security Advisory

CVE-2022-35217

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-08-02 02:55:28
Last updated 2024-09-16 20:53:13
Assigner twcert
State PUBLISHED

Description

The NHI card’s web service component has a stack-based buffer overflow vulnerability due to insufficient validation for network packet header length. A local area network attacker with general user privilege can exploit this vulnerability to execute arbitrary code, manipulate system command or disrupt service.