First published: Mon Jul 31 2017(Updated: )
The Comcast firmware on Cisco DPC3939 (firmware version dpc3939-P20-18-v303r20421746-170221a-CMCST) devices allows remote attackers to obtain unintended access to the Network Processor (NP) 169.254/16 IP network by adding a routing-table entry that specifies the LAN IP address as the router for that network.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Dpc3939 Firmware | =dpc3939-p20-18-v303r20421746-170221a-cmcst | |
Cisco DPC3939 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-9481 has a medium severity rating, indicating a moderate risk to affected devices.
To fix CVE-2017-9481, update the Cisco DPC3939 firmware to a fixed version that addresses this vulnerability.
CVE-2017-9481 affects Cisco DPC3939 devices running the specific firmware version dpc3939-P20-18-v303r20421746-170221a-CMCST.
CVE-2017-9481 allows remote attackers to access the Network Processor of the device through manipulated routing-table entries.
Yes, CVE-2017-9481 can be exploited by remote attackers without requiring authentication.