VYPR
Critical severity9.8NVD Advisory· Published Aug 8, 2024· Updated Jun 17, 2026

CVE-2024-7490

CVE-2024-7490

Description

Improper Input Validation vulnerability in Microchip Techology Advanced Software Framework example DHCP server can cause remote code execution through a buffer overflow. This vulnerability is associated with program files tinydhcpserver.C and program routines lwip_dhcp_find_option.

This issue affects Advanced Software Framework: through 3.52.0.2574.

ASF is no longer being supported. Apply provided workaround or migrate to an actively maintained framework.

Affected products

3
  • cpe:2.3:a:microchip:advanced_software_framework:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:microchip:advanced_software_framework:*:*:*:*:*:*:*:*range: <=3.52.0.2574
    • (no CPE)range: <=3.52.0.2574
  • Microchip Techology/Advanced Software Frameworkv5
    Range: 0

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.