PT-2022-4913 · NetGear · Netgear Nighthawk Ac1900 Smart Wifi Dual Band Gigabit Router R7000

Published

2022-08-01

·

Updated

2022-09-24

·

CVE-2022-37235

CVSS v2.0

10

Critical

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Netgear Nighthawk AC1900 Smart WiFi Dual Band Gigabit Router R7000 version 1.0.11.134 10.2.119
Description The issue is related to a buffer overflow vulnerability caused by the strncat function in the firmware of the Netgear Nighthawk AC1900 Smart WiFi Dual Band Gigabit Router R7000. This vulnerability can be exploited to cause a denial of service. The vulnerability is associated with the wl binary in the firmware.
Recommendations For Netgear Nighthawk AC1900 Smart WiFi Dual Band Gigabit Router R7000 version 1.0.11.134 10.2.119, consider disabling the wl binary as a temporary workaround until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Memory Corruption

Stack Overflow

Weakness Enumeration

Related Identifiers

BDU:2022-06082
CVE-2022-37235

Affected Products

Netgear Nighthawk Ac1900 Smart Wifi Dual Band Gigabit Router R7000