CVE-2022-24702 Information

Description

UNSUPPORTED WHEN ASSIGNED An issue was discovered in WinAPRS 2.9.0. A buffer overflow in the VHF KISS TNC component allows a remote attacker to achieve remote code execution via malicious AX.25 packets over the air. NOTE: This vulnerability only affects products that are no longer supported by the maintainer.

Reference

https://www.coalfire.com/the-coalfire-blog/hacking-ham-radio-winaprs-part1 https://winaprs.com/ https://github.com/Coalfire-Research/WinAPRS-Exploits https://news.ycombinator.com/item?id=31571476

Share on: