Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This affects R6250 before 1.0.4.12, R6300v2 before 1.0.4.12, R6700 before 1.0.1.22, R6900 before 1.0.1.22, R7000 before 1.0.9.4, R7900 before 1.0.1.12, R8000 before 1.0.3.24, and R8500 before 1.0.2.74.
References
Link | Resource |
---|---|
https://kb.netgear.com/000051511/Security-Advisory-for-Pre-Authentication-Buffer-Overflow-on-Some-Routers-PSV-2017-0324 | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
Configuration 3 (hide)
AND |
|
Configuration 4 (hide)
AND |
|
Configuration 5 (hide)
AND |
|
Configuration 6 (hide)
AND |
|
Configuration 7 (hide)
AND |
|
Configuration 8 (hide)
AND |
|
History
No history.
Information
Published : 2020-04-23 16:15
Updated : 2020-04-23 22:17
NVD link : CVE-2017-18744
Mitre link : CVE-2017-18744
CVE.ORG link : CVE-2017-18744
JSON object : View
Products Affected
netgear
- r8500
- r6250
- r8000
- r6300
- r6900
- r7000_firmware
- r6900_firmware
- r7900
- r6700_firmware
- r6250_firmware
- r6700
- r7900_firmware
- r8500_firmware
- r8000_firmware
- r7000
- r6300_firmware
CWE
CWE-120
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')