CVE-2011-1323: Input Validation
Yamaha RTX, RT, SRT, RTV, RTW, and RTA series routers with firmware 6.x through 10.x, and NEC IP38X series routers with firmware 6.x through 10.x, do not properly handle IP header options, which allows remote attackers to cause a denial of service (device reboot) via a crafted option that triggers access to an invalid memory location.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-1323?
CVE-2011-1323 has a severity rating that indicates it can cause a denial of service by rebooting affected Yamaha and NEC routers.
How do I fix CVE-2011-1323?
To fix CVE-2011-1323, update the firmware of the affected Yamaha and NEC routers to the latest version provided by the manufacturer.
What devices are affected by CVE-2011-1323?
CVE-2011-1323 affects various models of Yamaha RTX, RT, SRT, RTV, RTW, RTA series routers and NEC IP38X series routers running specific firmware versions.
Can CVE-2011-1323 be exploited remotely?
Yes, CVE-2011-1323 can be exploited remotely by an attacker sending crafted IP header options, leading to a device reboot.
What versions of firmware are vulnerable in CVE-2011-1323?
Firmware versions 6.x through 10.x for the affected Yamaha and NEC routers are vulnerable to CVE-2011-1323.