First published: Mon May 04 2020(Updated: )
CRLF injection vulnerability in Network Center in Synology Router Manager (SRM) before 1.2.3-8017-2 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via crafted network traffic.
Credit: security@synology.com
Affected Software | Affected Version | How to fix |
---|---|---|
Synology Router Manager | <1.2.3-8017-2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-11823 is a CRLF injection vulnerability in Synology Router Manager (SRM) before version 1.2.3-8017-2.
CVE-2019-11823 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) through crafted network traffic.
CVE-2019-11823 has a severity rating of 7.5 (High).
To mitigate CVE-2019-11823, update Synology Router Manager (SRM) to version 1.2.3-8017-2 or later.
You can find more information about CVE-2019-11823 on Synology's security advisory page (https://www.synology.com/security/advisory/Synology_SA_20_11) and Talos Intelligence vulnerability report (https://www.talosintelligence.com/vulnerability_reports/TALOS-2020-1051).