Impact
A stack‑based buffer overflow occurs in the sub_407220 function of the /usr/sbin/httpd daemon within the DNS List Rendering component of Shibby Tomato firmware. The overflow is triggered by malformed input received through the HTTP interface, which can corrupt the stack and potentially allow an attacker to execute arbitrary code on the device. The impact is a complete compromise of the affected system, including loss of confidentiality, integrity, and availability.
Affected Systems
Firmware versions up to 1.28.0000 of Shibby Tomato are vulnerable. The vulnerability status of later releases and the FreshTomato project is not documented in the available data.
Risk and Exploitability
The CVSS score of 8.7 reflects high severity due to full remote exploitation potential and no authentication requirements. The EPSS score of less than 1% indicates a low probability of current exploitation. The likelihood of attack is remote, reachable via the network-facing httpd service, and an attacker can trigger the overflow without needing local access.
OpenCVE Enrichment