Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Arris VIP1113 devices through 2025-05-30 with KreaTV SDK allow booting an arbitrary image via a crafted /usr/bin/gunzip file.
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
对候选路径的不恰当保护
Vulnerability Title
Arris VIP1113 安全漏洞
Vulnerability Description
Arris VIP1113是美国Arris公司的一款用于高清 IPTV 服务的机顶盒。 Arris VIP1113 2025-05-30及之前版本存在安全漏洞,该漏洞源于特制/usr/bin/gunzip文件可能导致任意镜像启动。
CVSS Information
N/A
Vulnerability Type
N/A