Addressed multiple stack buffer overflow vulnerabilities that could allow an attacker to carry out escalation of privileges through unauthorized remote code execution in Western Digital My Cloud devices before 5.04.114.
The product writes data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
https://support.wdc.com/downloads.aspx?g=907&lang=en | vendor advisory |
https://www.westerndigital.com/support/productsecurity/wdc-20007-my-cloud-firmware-version-5-04-114 | vendor advisory |