CVE-2019-17094: Stack-Based Overflow vulnerability in Belkin WeMo Insights Switch
Published Jan 27, 2020
·Updated
A Stack-based Buffer Overflow vulnerability in libbelkinapi.so component of Belkin WeMo Insight Switch firmware allows a local attacker to obtain code execution on the device. This issue affects: Belkin WeMo Insight Switch firmware version 2.00.11396 and prior versions.
Affected Software
2 affected components
Belkin WeMo Insight Switch firmware<2.00.11396
Belkin WeMo Insight Switch
Remediation
Information
Update to the latest firmware version available.
Event History
Jan 27, 2020
CVE Published
via MITRE·05:14 PM
Data Sourced
via MITRE·05:14 PM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2019-17094?
CVE-2019-17094 is a Stack-based Buffer Overflow vulnerability in the Belkin WeMo Insight Switch firmware.
2
How does CVE-2019-17094 affect Belkin WeMo Insight Switch firmware?
CVE-2019-17094 allows a local attacker to obtain code execution on the device.
3
Which version of Belkin WeMo Insight Switch firmware is affected by CVE-2019-17094?
Belkin WeMo Insight Switch firmware version 2.00.11396 and prior versions are affected.
4
What is the severity of CVE-2019-17094?
CVE-2019-17094 has a severity rating of 7.8 (high).
5
How can I fix CVE-2019-17094?
To fix CVE-2019-17094, update the Belkin WeMo Insight Switch firmware to a version beyond 2.00.11396.