CVE-2017-18846: Buffer Overflow
Published Apr 20, 2020
·Updated
Certain NETGEAR devices are affected by a stack-based buffer overflow. This affects R6250 before 1.0.4.12, R6400v2 before 1.0.2.32, R7000P/R6900P before 1.0.0.56, R7900 before 1.0.1.18, R8300 before 1.0.2.1001.0.82, R8500 before 1.0.2.1001.0.82, and D8500 before 1.0.3.29.
Affected Software
16 affected components
Netgear R6250 Firmware<1.0.4.12
Netgear R6250
Netgear R6400 Firmware<1.0.2.32
Netgear R6400=v2
Netgear R7000p Firmware<1.0.0.56
Netgear R7000P
Netgear R6900p Firmware<1.0.0.56
Netgear R6900P
Netgear R7900 Firmware<1.0.1.18
Netgear R7900
Netgear R8300 Firmware<1.0.2.100_1.0.82
Netgear R8300
Netgear R8500 Firmware<1.0.2.100_1.0.82
Netgear R8500
Netgear D8500 Firmware<1.0.3.29
Netgear D8500
Event History
Apr 20, 2020
CVE Published
via MITRE·03:40 PM
Data Sourced
via MITRE·03:40 PM
DescriptionSeverity
Frequently Asked Questions
1
Which NETGEAR devices are affected by CVE-2017-18846?
R6250, R6400v2, R7000P/R6900P, R7900, R8300, R8500, and D8500 are affected by CVE-2017-18846.
2
What is the severity of CVE-2017-18846?
CVE-2017-18846 has a severity rating of 6.7 out of 10.
3
How can I fix CVE-2017-18846?
To fix CVE-2017-18846, update the firmware of the affected NETGEAR devices to the latest version available.
4
Where can I find more information about CVE-2017-18846?
You can find more information about CVE-2017-18846 in the Netgear Security Advisory.
5
What is the Common Weakness Enumeration (CWE) for CVE-2017-18846?
The Common Weakness Enumeration (CWE) for CVE-2017-18846 is CWE-119 and CWE-787.