CVE-2021-45609: Buffer Overflow
Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This affects D8500 before 1.0.3.58, R6250 before 1.0.4.48, R7000 before 1.0.11.116, R7100LG before 1.0.0.64, R7900 before 1.0.4.38, R8300 before 1.0.2.144, R8500 before 1.0.2.144, XR300 before 1.0.3.68, R7000P before 1.3.2.132, and R6900P before 1.3.2.132.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2021-45609?
CVE-2021-45609 is a buffer overflow vulnerability in certain NETGEAR devices which allows an unauthenticated attacker to execute arbitrary code.
Which NETGEAR devices are affected by CVE-2021-45609?
Devices affected by CVE-2021-45609 include D8500 before 1.0.3.58, R6250 before 1.0.4.48, R7000 before 1.0.11.116, R7100LG before 1.0.0.64, R7900 before 1.0.4.38, R8300 before 1.0.2.144, R8500 before 1.0.2.144, XR300 before 1.0.3.68, R7000P before 1.3.2.132, and R6900P before 1.3.2.132.
What is the severity of CVE-2021-45609?
CVE-2021-45609 has a severity score of 9.8, indicating a critical vulnerability.
How can an attacker exploit CVE-2021-45609?
An unauthenticated attacker can exploit CVE-2021-45609 by sending a specially crafted request, triggering a buffer overflow condition and potentially executing arbitrary code.
How can I mitigate CVE-2021-45609?
To mitigate CVE-2021-45609, it is recommended to update to the latest firmware version provided by NETGEAR, which addresses the buffer overflow vulnerability.