Impact
A buffer overflow exists in the gohead/sub_425994 component of the UTT nv518G firmware version 518GV3v3.2.7-210919-161313. The flaw allows a remote attacker to deliver crafted input that overflows the stack, causing the device to crash or reboot. The result is a denial of service; no evidence of confidentiality or integrity compromise is disclosed.
Affected Systems
The only affected devices are UTT nv518G series machines running firmware 518GV3v3.2.7-210919-161313. No other vendors or products are listed in the CVE data.
Risk and Exploitability
With a CVSS score of 7.5, the vulnerability is high severity. The EPSS score of 0.00423 indicates a very low but non-zero likelihood of exploitation. It is not listed in the CISA KEV catalog. An attacker can execute the overflow remotely via the vulnerable gohead/sub_425994 service, likely triggering a reboot or crash that disrupts availability. No confirmed exploitation reports are known.
OpenCVE Enrichment