CVE-2019-5016: Infoleak
An exploitable arbitrary memory read vulnerability exists in the KCodes NetUSB.ko kernel module which enables the ReadySHARE Printer functionality of at least two NETGEAR Nighthawk Routers and potentially several other vendors/products. A specially crafted index value can cause an invalid memory read, resulting in a denial of service or remote information disclosure. An unauthenticated attacker can send a crafted packet on the local network to trigger this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-5016?
CVE-2019-5016 has a high severity rating due to its potential to allow arbitrary memory reads.
How do I fix CVE-2019-5016?
To fix CVE-2019-5016, update the firmware of affected NETGEAR routers to the latest version available.
Which devices are affected by CVE-2019-5016?
CVE-2019-5016 affects NETGEAR Nighthawk Routers, specifically R8000 and R7900P models with vulnerable firmware versions.
Is the KCodes NetUSB.ko module related to CVE-2019-5016?
Yes, CVE-2019-5016 is a vulnerability in the KCodes NetUSB.ko kernel module.
Can CVE-2019-5016 potentially affect other products?
CVE-2019-5016 may potentially affect other vendors' products that utilize the vulnerable KCodes NetUSB.ko module.