First published: Sun Dec 26 2021(Updated: )
Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user. This affects R6400 before 1.0.1.70, R7000 before 1.0.11.126, R7900 before 1.0.4.46, R7900P before 1.4.2.84, R7960P before 1.4.2.84, R8000 before 1.0.4.74, R8000P before 1.4.2.84, RAX200 before 1.0.4.120, RS400 before 1.5.1.80, R6400v2 before 1.0.4.118, R7000P before 1.3.3.140, RAX80 before 1.0.4.120, R6700v3 before 1.0.4.118, R6900P before 1.3.3.140, and RAX75 before 1.0.4.120.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Netgear R6400 Firmware | <1.0.1.70 | |
NETGEAR R6400 | ||
Netgear R7000 Firmware | <1.0.11.126 | |
NETGEAR R7000 | ||
Netgear R7900 Firmware | <1.0.4.46 | |
Netgear R7900 | ||
Netgear R7900p Firmware | <1.4.2.84 | |
Netgear R7900p | ||
Netgear R7960p Firmware | <1.4.2.84 | |
Netgear R7960p | ||
Netgear R8000 Firmware | <1.0.4.74 | |
NETGEAR R8000 | ||
Netgear R8000p Firmware | <1.4.2.84 | |
Netgear R8000p | ||
Netgear R7000p Firmware | <1.3.3.140 | |
Netgear R7000P | ||
Netgear R6900p Firmware | <1.3.3.140 | |
Netgear R6900P | ||
Netgear R6700v3 Firmware | <1.0.4.118 | |
NETGEAR R6700v3 | ||
Netgear R6400v2 Firmware | <1.0.4.118 | |
NETGEAR R6400v2 | ||
Netgear Rax200 Firmware | <1.0.4.120 | |
NETGEAR RAX200 | ||
Netgear Rax80 Firmware | <1.0.4.120 | |
Netgear Rax80 | ||
Netgear Rax75 Firmware | <1.0.4.120 | |
Netgear Rax75 | ||
Netgear Rs400 Firmware | <1.5.1.80 | |
Netgear Rs400 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-45606 is a stack-based buffer overflow vulnerability affecting certain NETGEAR devices.
The NETGEAR devices affected by CVE-2021-45606 include R6400, R7000, R7900, R7900P, R7960P, R8000, R8000P, RAX200, and other models.
CVE-2021-45606 has a severity score of 8.8 (high).
CVE-2021-45606 allows an authenticated user to execute malicious code by exploiting a stack-based buffer overflow vulnerability.
Yes, NETGEAR has released firmware updates to address the CVE-2021-45606 vulnerability. Please refer to the official NETGEAR security advisory for more information.