CVE Vulnerabilities

CVE-2023-31893

Uncontrolled Recursion

Published: Jun 05, 2023 | Modified: Jan 31, 2025
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Telefnica Brasil Vivo Play (IPTV) Firmware: 2023.04.04.01.06.15 is vulnerable to Denial of Service (DoS) via DNS Recursion.

Weakness

The product does not properly control the amount of recursion that takes place, consuming excessive resources, such as allocated memory or the program stack.

Affected Software

NameVendorStart VersionEnd Version
Brasil_vivo_play_firmwareTelefonica2023.04.04.01.06.15 (including)2023.04.04.01.06.15 (including)

Potential Mitigations

References