PT-2020-10658 · NetGear · Xr500+16
Published
2020-04-16
·
Updated
2020-04-21
·
CVE-2019-20683
CVSS v3.1
8.8
High
| Vector | AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
NETGEAR D3600 versions prior to 1.0.0.76
NETGEAR D6000 versions prior to 1.0.0.76
NETGEAR D6200 versions prior to 1.1.00.32
NETGEAR D7000 versions prior to 1.0.1.68
NETGEAR JR6150 versions prior to 1.0.1.18
NETGEAR PR2000 versions prior to 1.0.0.28
NETGEAR R6020 versions prior to 1.0.0.38
NETGEAR R6050 versions prior to 1.0.1.18
NETGEAR R6080 versions prior to 1.0.0.38
NETGEAR R6120 versions prior to 1.0.0.46
NETGEAR R6220 versions prior to 1.1.0.80
NETGEAR R6260 versions prior to 1.1.0.40
NETGEAR R6700v2 versions prior to 1.2.0.36
NETGEAR R6800 versions prior to 1.2.0.36
NETGEAR R6900v2 versions prior to 1.2.0.36
NETGEAR WNR2020 versions prior to 1.1.0.62
NETGEAR XR500 versions prior to 2.3.2.32
Description
The issue is a stack-based buffer overflow that can be exploited by an unauthenticated attacker.
Recommendations
For NETGEAR D3600 version prior to 1.0.0.76, update to version 1.0.0.76 or later.
For NETGEAR D6000 version prior to 1.0.0.76, update to version 1.0.0.76 or later.
For NETGEAR D6200 version prior to 1.1.00.32, update to version 1.1.00.32 or later.
For NETGEAR D7000 version prior to 1.0.1.68, update to version 1.0.1.68 or later.
For NETGEAR JR6150 version prior to 1.0.1.18, update to version 1.0.1.18 or later.
For NETGEAR PR2000 version prior to 1.0.0.28, update to version 1.0.0.28 or later.
For NETGEAR R6020 version prior to 1.0.0.38, update to version 1.0.0.38 or later.
For NETGEAR R6050 version prior to 1.0.1.18, update to version 1.0.1.18 or later.
For NETGEAR R6080 version prior to 1.0.0.38, update to version 1.0.0.38 or later.
For NETGEAR R6120 version prior to 1.0.0.46, update to version 1.0.0.46 or later.
For NETGEAR R6220 version prior to 1.1.0.80, update to version 1.1.0.80 or later.
For NETGEAR R6260 version prior to 1.1.0.40, update to version 1.1.0.40 or later.
For NETGEAR R6700v2 version prior to 1.2.0.36, update to version 1.2.0.36 or later.
For NETGEAR R6800 version prior to 1.2.0.36, update to version 1.2.0.36 or later.
For NETGEAR R6900v2 version prior to 1.2.0.36, update to version 1.2.0.36 or later.
For NETGEAR WNR2020 version prior to 1.1.0.62, update to version 1.1.0.62 or later.
For NETGEAR XR500 version prior to 2.3.2.32, update to version 2.3.2.32 or later.
Fix
Memory Corruption
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
D3600
D6000
D6200
D7000
Jr6150
Pr2000
R6020
R6050
R6080
R6120
R6220
R6260
R6700V2
R6800
R6900V2
Wnr2020
Xr500