CVE-2017-18865: Buffer Overflow
Published May 5, 2020
·Updated
Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user. This affects R8300 before 1.0.2.104 and R8500 before 1.0.2.104.
Affected Software
4 affected components
Netgear R8500 Firmware<1.0.2.104
Netgear R8500
Netgear R8300 Firmware<1.0.2.104
Netgear R8300
Event History
May 5, 2020
CVE Published
via MITRE·01:48 PM
Data Sourced
via MITRE·01:48 PM
DescriptionSeverity
Frequently Asked Questions
1
What is the vulnerability ID for this NETGEAR stack-based buffer overflow?
The vulnerability ID for this NETGEAR stack-based buffer overflow is CVE-2017-18865.
2
Which devices are affected by this stack-based buffer overflow vulnerability?
The NETGEAR R8300 and R8500 devices are affected by this stack-based buffer overflow vulnerability.
3
What is the severity rating of CVE-2017-18865?
CVE-2017-18865 has a severity rating of 6.8 (Medium).
4
How can I fix the stack-based buffer overflow vulnerability on my NETGEAR device?
To fix the stack-based buffer overflow vulnerability on your NETGEAR device, update to version 1.0.2.104 for R8300 or R8500 firmware.
5
Where can I find more information about this vulnerability?
You can find more information about this vulnerability at the following link: https://kb.netgear.com/000051485/Security-Advisory-for-Post-Authentication-Stack-Overflow-on-R8300-and-R8500-PSV-2017-2228