vciy

Insteon Hub: 81 records in one advisory

81 records announced together, published 2023-01-11, every one of them citing the same advisory.

The advisory

Every record in this batch cites https://talosintelligence.com/vulnerability_reports/TALOS-2017-0483. That is the CNA's own reference, held in the index, and it is why these records are on one page.

What the records offer

No record in this batch publishes a fixed version in held sources.

No record in this batch is listed by CISA in held sources.

Every record names something of its own, listed against it below.

Most commonly mapped weakness across the batch: CWE-121: Stack-based Buffer Overflow.

What this page does not cover

This batch is 81 of the 84 records that cite the same advisory. The other 3 are different findings announced alongside it.

None of those 3 is grouped with any other. Each one has its own record page and nothing else.

The batch is what one advisory announced. It is not every record sharing this weakness, this product or this mechanism, and nothing here is scoped to any estate.

What this batch was researched, not held

Talos filed one Insteon Hub report and published 86 identifiers under it

Claudio Bozzato of Cisco Talos audited the Insteon Hub 2245-222 on firmware 1012. The record text these identifiers share is Talos's own, written as the assigning authority: multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the cc channel of Insteon Hub running firmware version 1012, and specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow. Talos published that work as one report, TALOS-2017-0483, and gives the identifier range CVE-2017-16252 through CVE-2017-16337 under it, 86 numbers in all. Talos notified the vendor on 27 November 2017 and published on 19 June 2018, alongside eleven further Insteon Hub reports. In the blog post that accompanied them, Talos wrote that the majority of the vulnerabilities have their root cause in the unsafe usage of the strcpy function, and said firmware 1016 fixes the issues its reports cover. The identifiers only reached the public CVE list on 11 January 2023, more than five years after they were reserved on 31 October 2017.

Everything said here about a shared root cause is Talos speaking about its own report: Talos wrote that the majority of the vulnerabilities it covers come from unsafe use of strcpy, and Talos names firmware 1016 as the fix for what its reports cover. Those are statements about Talos's research and its wording, not a finding of ours that the records in this group are one flaw or that one update closes them. The identifiers were published together because Talos released them together, and each record stands on its own text.

2017-10-31The identifiers are reserved by Talos as the assigning authority
2017-11-27Talos notifies the vendor
2018-06-19Talos publishes the report and a blog post covering twelve Insteon Hub reports in total
2023-01-11The records are published to the CVE list, more than five years after reservation

The report does not map each identifier to the specific message parameter it belongs to, so a reader cannot work out which record describes which field, and Talos does not say whether real deployments were ever attacked this way. The vendor published nothing of its own that we could find, so the whole of this group's account comes from the researcher's side.

Written from talosintelligence.com, blog.talosintelligence.com, cveawg.mitre.org. Reviewed for whether every claim traces to one of them, by two independent graders, citation support 4.44 of 5, uniqueness 4 of 5. Stated at high confidence. Nothing in this box is a value the index holds, and none of it opens a receipt.

Listed for shared announcement, not shared vulnerability. Each record here is its own finding with its own page, and fixing one does not address another.

CVE-2017-162560x9d014ebcCWE-121: Stack-based Buffer Overflow
CVE-2017-162570x9d014f28CWE-121: Stack-based Buffer Overflow
CVE-2017-162580x9d014f7cCWE-121: Stack-based Buffer Overflow
CVE-2017-162590x9d015430CWE-121: Stack-based Buffer Overflow
CVE-2017-162600x9d015478CWE-121: Stack-based Buffer Overflow
CVE-2017-162610x9d015714CWE-121: Stack-based Buffer Overflow
CVE-2017-162620x9d015864CWE-121: Stack-based Buffer Overflow
CVE-2017-162630x9d015a8cCWE-121: Stack-based Buffer Overflow
CVE-2017-16264l_b 0x9d015cfcCWE-121: Stack-based Buffer Overflow
CVE-2017-16265l_bt 0x9d016104CWE-121: Stack-based Buffer Overflow
CVE-2017-162660x9d016530CWE-121: Stack-based Buffer Overflow
CVE-2017-162670x9d016578CWE-121: Stack-based Buffer Overflow
CVE-2017-162680x9d0165c0CWE-121: Stack-based Buffer Overflow
CVE-2017-162690x9d01672cCWE-121: Stack-based Buffer Overflow
CVE-2017-162700x9d01679cCWE-121: Stack-based Buffer Overflow
CVE-2017-162710x9d016c94CWE-121: Stack-based Buffer Overflow
CVE-2017-162720x9d016cf0CWE-121: Stack-based Buffer Overflow
CVE-2017-16273e_ml 0x9d016fa8CWE-121: Stack-based Buffer Overflow
CVE-2017-16274e_u 0x9d017364CWE-121: Stack-based Buffer Overflow
CVE-2017-162750x9d01758cCWE-121: Stack-based Buffer Overflow
CVE-2017-162760x9d0175f4CWE-121: Stack-based Buffer Overflow
CVE-2017-162770x9d017658CWE-121: Stack-based Buffer Overflow
CVE-2017-162780x9d01815cCWE-121: Stack-based Buffer Overflow
CVE-2017-162790x9d0181a4CWE-121: Stack-based Buffer Overflow
CVE-2017-162800x9d0181ecCWE-121: Stack-based Buffer Overflow
CVE-2017-162810x9d018234CWE-121: Stack-based Buffer Overflow
CVE-2017-162820x9d01827cCWE-121: Stack-based Buffer Overflow
CVE-2017-162830x9d0188a8CWE-121: Stack-based Buffer Overflow
CVE-2017-162840x9d018958CWE-121: Stack-based Buffer Overflow
CVE-2017-162850x9d018e58CWE-121: Stack-based Buffer Overflow
CVE-2017-162860x9d018ea0CWE-121: Stack-based Buffer Overflow
CVE-2017-162870x9d018f00CWE-121: Stack-based Buffer Overflow
CVE-2017-162880x9d018f60CWE-121: Stack-based Buffer Overflow
CVE-2017-16289s_utc 0x9d0193acCWE-121: Stack-based Buffer Overflow
CVE-2017-162900x9d01980cCWE-121: Stack-based Buffer Overflow
CVE-2017-162910x9d019854CWE-121: Stack-based Buffer Overflow
CVE-2017-16292g_schd 0x9d019c50CWE-121: Stack-based Buffer Overflow
CVE-2017-162930x9d01a010CWE-121: Stack-based Buffer Overflow
CVE-2017-162940x9d01a144CWE-121: Stack-based Buffer Overflow
CVE-2017-162950x9d01a18cCWE-121: Stack-based Buffer Overflow
CVE-2017-162960x9d01a1d4CWE-121: Stack-based Buffer Overflow
CVE-2017-162970x9d01a21cCWE-121: Stack-based Buffer Overflow
CVE-2017-162980x9d01a264CWE-121: Stack-based Buffer Overflow
CVE-2017-16299sn_raw 0x9d01aad8CWE-121: Stack-based Buffer Overflow
CVE-2017-163000x9d01ac74CWE-121: Stack-based Buffer Overflow
CVE-2017-163010x9d01ad14CWE-121: Stack-based Buffer Overflow
CVE-2017-163020x9d01ad78CWE-121: Stack-based Buffer Overflow
CVE-2017-163030x9d01addcCWE-121: Stack-based Buffer Overflow
CVE-2017-163040x9d01ae40CWE-121: Stack-based Buffer Overflow
CVE-2017-163050x9d01b20cCWE-121: Stack-based Buffer Overflow
CVE-2017-163060x9d01b2acCWE-121: Stack-based Buffer Overflow
CVE-2017-163070x9d01b310CWE-121: Stack-based Buffer Overflow
CVE-2017-163080x9d01b374CWE-121: Stack-based Buffer Overflow
CVE-2017-163090x9d01b3d8CWE-121: Stack-based Buffer Overflow
CVE-2017-16310s_ch 0x9d01b7b0CWE-121: Stack-based Buffer Overflow
CVE-2017-16311updatecheck 0x9d01bb64CWE-121: Stack-based Buffer Overflow
CVE-2017-163120x9d01c028CWE-121: Stack-based Buffer Overflow
CVE-2017-163130x9d01c084CWE-121: Stack-based Buffer Overflow
CVE-2017-163140x9d01c1ccCWE-121: Stack-based Buffer Overflow
CVE-2017-163150x9d01c3a0CWE-121: Stack-based Buffer Overflow
CVE-2017-163160x9d01c898CWE-121: Stack-based Buffer Overflow
CVE-2017-163170x9d01d068CWE-121: Stack-based Buffer Overflow
CVE-2017-163180x9d01d16cCWE-121: Stack-based Buffer Overflow
CVE-2017-163190x9d01d7a8CWE-121: Stack-based Buffer Overflow
CVE-2017-163200x9d01ddd4CWE-121: Stack-based Buffer Overflow
CVE-2017-163210x9d01e050CWE-121: Stack-based Buffer Overflow
CVE-2017-163220x9d01e228CWE-121: Stack-based Buffer Overflow
CVE-2017-163230x9d01e2f4CWE-121: Stack-based Buffer Overflow
CVE-2017-163240x9d01e368CWE-121: Stack-based Buffer Overflow
CVE-2017-163250x9d01e3a8CWE-121: Stack-based Buffer Overflow
CVE-2017-163260x9d01e5f4CWE-121: Stack-based Buffer Overflow
CVE-2017-16327s_init_event 0x9d01ea88CWE-121: Stack-based Buffer Overflow
CVE-2017-163280x9d01eb08CWE-121: Stack-based Buffer Overflow
CVE-2017-163290x9d01eb44CWE-121: Stack-based Buffer Overflow
CVE-2017-163300x9d01eb8cCWE-121: Stack-based Buffer Overflow
CVE-2017-163310x9d01ebd4CWE-121: Stack-based Buffer Overflow
CVE-2017-163320x9d01ec34CWE-121: Stack-based Buffer Overflow
CVE-2017-163330x9d01ed7cCWE-121: Stack-based Buffer Overflow
CVE-2017-163340x9d01edb8CWE-121: Stack-based Buffer Overflow
CVE-2017-163350x9d01ee70CWE-121: Stack-based Buffer Overflow
CVE-2017-163360x9d01eeb0CWE-121: Stack-based Buffer Overflow

81 records, read from the index as it stood on 2026-09-20. Every row opens the record it names, and every value on that record opens its own receipt.

Everything on this page is free. Public data. Withholding it protects nothing.