PT-2020-10710 · NetGear · Xr500+14
Aircut
·
Published
2020-04-16
·
Updated
2020-04-23
·
CVE-2019-20735
CVSS v3.1
6.8
Medium
| Vector | AV:A/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
NETGEAR D3600 versions 1.0.0.0 through 1.0.0.74
NETGEAR D6000 versions 1.0.0.0 through V1.0.0.74
NETGEAR D6100 versions 1.0.0.0 through V1.0.0.62
NETGEAR R7800 versions 1.0.0.0 through v1.0.2.51
NETGEAR R8900 versions 1.0.0.0 through v1.0.4.1
NETGEAR R9000 versions 1.0.0.0 through v1.0.4.1
NETGEAR RBK50 versions 2.0.0.0 through v2.3.0.31
NETGEAR RBR50 versions 2.0.0.0 through v2.3.0.31
NETGEAR RBS50 versions 2.0.0.0 through v2.3.0.31
NETGEAR WNDR3700v4 versions 1.0.0.0 through V1.0.2.101
NETGEAR WNDR4300v1 versions 1.0.0.0 through V1.0.2.103
NETGEAR WNDR4300v2 versions 1.0.0.0 through v1.0.0.57
NETGEAR WNDR4500v3 versions 1.0.0.0 through v1.0.0.57
NETGEAR WNR2000v5 versions 1.0.0.0 through v1.0.0.67
NETGEAR XR500 versions 2.0.0.0 through V2.3.2.31
Description
Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user.
Recommendations
Update D3600 to version 1.0.0.75 or later.
Update D6000 to version V1.0.0.75 or later.
Update D6100 to version V1.0.0.63 or later.
Update R7800 to version v1.0.2.52 or later.
Update R8900 to version v1.0.4.2 or later.
Update R9000 to version v1.0.4.2 or later.
Update RBK50 to version v2.3.0.32 or later.
Update RBR50 to version v2.3.0.32 or later.
Update RBS50 to version v2.3.0.32 or later.
Update WNDR3700v4 to version V1.0.2.102 or later.
Update WNDR4300v1 to version V1.0.2.104 or later.
Update WNDR4300v2 to version v1.0.0.58 or later.
Update WNDR4500v3 to version v1.0.0.58 or later.
Update WNR2000v5 to version v1.0.0.68 or later.
Update XR500 to version V2.3.2.32 or later.
Fix
Memory Corruption
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
D3600
D6000
D6100
R7800
R8900
R9000
Rbk50
Rbr50
Rbs50
Wndr3700V4
Wndr4300V1
Wndr4300V2
Wndr4500V3
Wnr2000V5
Xr500