Impact
A buffer overflow exists in the GoHead component (sub_444C8C) of the UTT nv518G firmware version nv518GV3v3.2.7‑210919‑161313. The overflow corrupts memory and crashes the service, causing the device to become unresponsive. Because the flaw merely disrupts operation, it does not grant attackers the ability to gain control; a loss of availability.
Affected Systems
The affected system is the UTT518G router running firmware nv518GV3v3.2.7‑210919‑161313. The CVE data does not specify additional vulnerable firmware revisions, so the scope is limited to the aforementioned release.
Risk and Exploitability
The CVSS score of 7.5 classifies this issue as high severity, while the EPSS score of less than 1% suggests a very low probability that exploit code will be available in the wild. This vulnerability is not listed in the CISA KEV catalog. Based on the description, it is inferred that the attack vector is remote over the network, most likely targeting the GoHead service, and that no authentication is required to trigger the crash. Though the impact is limited to availability, repeated denial‑of‑service attacks could disrupt services or necessitate costly device restarts.
OpenCVE Enrichment