First published: Mon Apr 20 2020(Updated: )
Certain NETGEAR devices are affected by a stack-based buffer overflow. This affects R6250 before 1.0.4.12, R6400v2 before 1.0.2.32, R7000P/R6900P before 1.0.0.56, R7900 before 1.0.1.18, R8300 before 1.0.2.100_1.0.82, R8500 before 1.0.2.100_1.0.82, and D8500 before 1.0.3.29.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
netgear R6250 Firmware | <1.0.4.12 | |
NETGEAR R6250 | ||
Netgear R6400 Firmware | <1.0.2.32 | |
NETGEAR R6400 | =v2 | |
Netgear R7000p Firmware | <1.0.0.56 | |
Netgear R7000P | ||
Netgear R6900p Firmware | <1.0.0.56 | |
Netgear R6900P | ||
Netgear R7900 Firmware | <1.0.1.18 | |
Netgear R7900 | ||
Netgear R8300 Firmware | <1.0.2.100_1.0.82 | |
NETGEAR R8300 | ||
Netgear R8500 Firmware | <1.0.2.100_1.0.82 | |
NETGEAR R8500 | ||
Netgear D8500 Firmware | <1.0.3.29 | |
Netgear D8500 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
R6250, R6400v2, R7000P/R6900P, R7900, R8300, R8500, and D8500 are affected by CVE-2017-18846.
CVE-2017-18846 has a severity rating of 6.7 out of 10.
To fix CVE-2017-18846, update the firmware of the affected NETGEAR devices to the latest version available.
You can find more information about CVE-2017-18846 in the Netgear Security Advisory.
The Common Weakness Enumeration (CWE) for CVE-2017-18846 is CWE-119 and CWE-787.