First published: Sun Dec 26 2021(Updated: )
Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user. This affects R6400v2 before 1.0.4.118, R6700v3 before 1.0.4.118, R6900P before 1.3.3.140, R7000 before 1.0.11.126, R7000P before 1.3.3.140, RAX200 before 1.0.5.126, RAX75 before 1.0.5.126, and RAX80 before 1.0.5.126.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Netgear R6400v2 Firmware | <1.0.4.118 | |
NETGEAR R6400v2 | ||
Netgear R6700v3 Firmware | <1.0.4.118 | |
NETGEAR R6700v3 | ||
Netgear R6900p Firmware | <1.3.3.140 | |
Netgear R6900P | ||
Netgear R7000 Firmware | <1.0.11.126 | |
NETGEAR R7000 | ||
Netgear R7000p Firmware | <1.3.3.140 | |
Netgear R7000P | ||
Netgear Rax200 Firmware | <1.0.5.126 | |
NETGEAR RAX200 | ||
Netgear Rax75 Firmware | <1.0.5.126 | |
Netgear Rax75 | ||
Netgear Rax80 Firmware | <1.0.5.126 | |
Netgear Rax80 | ||
All of | ||
Netgear R6400v2 Firmware | <1.0.4.118 | |
NETGEAR R6400v2 | ||
All of | ||
Netgear R6700v3 Firmware | <1.0.4.118 | |
NETGEAR R6700v3 | ||
All of | ||
Netgear R6900p Firmware | <1.3.3.140 | |
Netgear R6900P | ||
All of | ||
Netgear R7000 Firmware | <1.0.11.126 | |
NETGEAR R7000 | ||
All of | ||
Netgear R7000p Firmware | <1.3.3.140 | |
Netgear R7000P | ||
All of | ||
Netgear Rax200 Firmware | <1.0.5.126 | |
NETGEAR RAX200 | ||
All of | ||
Netgear Rax75 Firmware | <1.0.5.126 | |
Netgear Rax75 | ||
All of | ||
Netgear Rax80 Firmware | <1.0.5.126 | |
Netgear Rax80 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-45607 affects certain NETGEAR devices through a stack-based buffer overflow vulnerability that can be exploited by an authenticated user.
NETGEAR devices R6400v2, R6700v3, R6900P, R7000, R7000P, RAX200, RAX75, and RAX80 are affected by CVE-2021-45607.
The severity of CVE-2021-45607 is high, with a severity value of 8.8.
An authenticated user can exploit CVE-2021-45607 by triggering a stack-based buffer overflow in the affected NETGEAR devices.
To fix CVE-2021-45607, users should update their firmware to the specified versions provided by NETGEAR in their security advisory.