CVE-2018-21216: Buffer Overflow
Published Apr 28, 2020
·Updated
Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This affects D3600 before 1.0.0.67, D6000 before 1.0.0.67, D6100 before 1.0.0.56, and R6100 before 1.0.1.20.
Affected Software
8 affected components
Netgear R6100 Firmware<1.0.1.20
Netgear R6100
Netgear D6000 Firmware<1.0.0.67
Netgear D6000
Netgear D3600 Firmware<1.0.0.67
Netgear D3600
Netgear D6100 Firmware<1.0.0.56
Netgear D6100
Event History
Apr 28, 2020
CVE Published
via MITRE·03:42 PM
Data Sourced
via MITRE·03:42 PM
DescriptionSeverity
Frequently Asked Questions
1
What is the vulnerability ID of this buffer overflow vulnerability?
The vulnerability ID is CVE-2018-21216.
2
Which devices are affected by this buffer overflow vulnerability?
Certain NETGEAR devices including D3600, D6000, D6100, and R6100 are affected.
3
What is the severity rating of CVE-2018-21216?
The severity rating is 8.8 (High).
4
How can an attacker exploit this vulnerability?
An unauthenticated attacker can exploit this vulnerability by sending a specially crafted buffer overflow attack.
5
Is there a fix available for CVE-2018-21216?
Yes, Netgear has released firmware updates to address this vulnerability. Please refer to the Netgear security advisory for more information.