CVE-2022-44198: Buffer Overflow
Netgear R7000P V1.3.1.64 is vulnerable to Buffer Overflow via parameter openvpnpush1.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID of this Netgear R7000P firmware vulnerability?
The vulnerability ID is CVE-2022-44198.
What is the severity of CVE-2022-44198?
The severity of CVE-2022-44198 is critical.
What software version is affected by CVE-2022-44198?
Netgear R7000P firmware version 1.3.1.64 is affected by CVE-2022-44198.
How can this vulnerability be exploited?
This vulnerability can be exploited via the 'openvpn_push1' parameter, leading to a buffer overflow.
Is Netgear R7000P hardware affected by CVE-2022-44198?
No, Netgear R7000P hardware is not affected by CVE-2022-44198.
Where can I find more information about this vulnerability?
More information about this vulnerability can be found at the following references: [1](https://github.com/RobinWang825/IoT_vuln/tree/main/Netgear/R7000P/14) and [2](https://www.netgear.com/about/security/).
What is the Common Weakness Enumeration (CWE) associated with CVE-2022-44198?
The CWEs associated with CVE-2022-44198 are CWE-119 (Improper Restriction of Operations within the Bounds of a Memory Buffer) and CWE-787 (Out-of-bounds Write).