CVE-2018-21214: Buffer Overflow
Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This affects D3600 before 1.0.0.67, D6000 before 1.0.0.67, EX2700 before 1.0.1.28, R6100 before 1.0.1.20, R7500v2 before 1.0.3.24, R9000 before 1.0.2.52, WN2000RPTv3 before 1.0.1.20, WN3000RPv3 before 1.0.2.50, and WN3100RPv2 before 1.0.0.56.
Affected Software
Event History
Frequently Asked Questions
Which NETGEAR devices are affected by CVE-2018-21214?
D3600 before 1.0.0.67, D6000 before 1.0.0.67, EX2700 before 1.0.1.28, R6100 before 1.0.1.20, R7500v2 before 1.0.3.24, R9000 before 1.0.2.52, WN2000RPTv3 before 1.0.1.20, WN3000RPv3 before 1.0.2.50
What is the severity of CVE-2018-21214?
The severity of CVE-2018-21214 is high (8.8).
How can an attacker exploit CVE-2018-21214?
An unauthenticated attacker can exploit CVE-2018-21214 through a buffer overflow vulnerability.
How do I fix CVE-2018-21214?
Apply the latest firmware updates provided by NETGEAR to fix CVE-2018-21214.
Where can I find more information about CVE-2018-21214?
You can find more information about CVE-2018-21214 on the NETGEAR security advisory page: https://kb.netgear.com/000055123/Security-Advisory-for-Pre-Authentication-Buffer-Overflow-on-Some-Routers-Gateways-and-Extenders-PSV-2017-2488