Impact
The vulnerability is a buffer overflow in the gohead//sub_497498 component of UTT nv518G firmware (CWE‑119). A crafted network packet can overflow the component’s memory, causing the device to crash or restart. The description does not indicate any disclosure of information or execution of arbitrary code, so the impact is limited to loss of availability for the affected system.
Affected Systems
The flaw affects UTT nv518G routers running firmware version nv518GV3v3.2.7‑210919‑161313. No other vendors or product variants are listed as impacted by the advisory.
Risk and Exploitability
The CVSS score of 6.5 denotes a moderate risk, while an EPSS below 1% suggests a low probability of exploitation at present. The vulnerability is not in the CISA KEV catalog. It can be triggered by a remote attacker sending a specially crafted packet over the network to the gohead interface; therefore exposure to untrusted networks increases risk.
OpenCVE Enrichment