CVE-2019-20685
Summary
| CVE | CVE-2019-20685 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2020-04-16 19:15:00 UTC |
| Updated | 2020-04-21 15:12:00 UTC |
| Description | Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects D3600 before 1.0.0.75, D6000 before 1.0.0.75, D6200 before 1.1.00.32, D7000 before 1.0.1.68, DM200 before 1.0.0.58, JR6150 before 1.0.1.18, PR2000 before 1.0.0.28, R6020 before 1.0.0.38, R6050 before 1.0.1.18, R6080 before 1.0.0.38, R6120 before 1.0.0.46, R6220 before 1.1.0.80, R6260 before 1.1.0.40, R6700v2 before 1.2.0.36, R6800 before 1.2.0.36, R6900v2 before 1.2.0.36, WNR2020 before 1.1.0.62, and XR500 before 2.3.2.32. |
Risk And Classification
Problem Types: CWE-787
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Netgear | D3600 | - | All | All | All |
| Hardware | Netgear | D3600 | - | All | All | All |
| Operating System | Netgear | D3600 Firmware | All | All | All | All |
| Operating System | Netgear | D3600 Firmware | All | All | All | All |
| Hardware | Netgear | D6000 | - | All | All | All |
| Hardware | Netgear | D6000 | - | All | All | All |
| Operating System | Netgear | D6000 Firmware | All | All | All | All |
| Operating System | Netgear | D6000 Firmware | All | All | All | All |
| Hardware | Netgear | D6200 | - | All | All | All |
| Hardware | Netgear | D6200 | - | All | All | All |
| Operating System | Netgear | D6200 Firmware | All | All | All | All |
| Operating System | Netgear | D6200 Firmware | All | All | All | All |
| Hardware | Netgear | D7000 | - | All | All | All |
| Hardware | Netgear | D7000 | - | All | All | All |
| Operating System | Netgear | D7000 Firmware | All | All | All | All |
| Operating System | Netgear | D7000 Firmware | All | All | All | All |
| Hardware | Netgear | Dm200 | - | All | All | All |
| Hardware | Netgear | Dm200 | - | All | All | All |
| Operating System | Netgear | Dm200 Firmware | All | All | All | All |
| Operating System | Netgear | Dm200 Firmware | All | All | All | All |
| Hardware | Netgear | Jr6150 | - | All | All | All |
| Hardware | Netgear | Jr6150 | - | All | All | All |
| Operating System | Netgear | Jr6150 Firmware | All | All | All | All |
| Operating System | Netgear | Jr6150 Firmware | All | All | All | All |
| Hardware | Netgear | Pr2000 | - | All | All | All |
| Hardware | Netgear | Pr2000 | - | All | All | All |
| Operating System | Netgear | Pr2000 Firmware | All | All | All | All |
| Operating System | Netgear | Pr2000 Firmware | All | All | All | All |
| Hardware | Netgear | R6020 | - | All | All | All |
| Hardware | Netgear | R6020 | - | All | All | All |
| Operating System | Netgear | R6020 Firmware | All | All | All | All |
| Operating System | Netgear | R6020 Firmware | All | All | All | All |
| Hardware | Netgear | R6050 | - | All | All | All |
| Hardware | Netgear | R6050 | - | All | All | All |
| Operating System | Netgear | R6050 Firmware | All | All | All | All |
| Operating System | Netgear | R6050 Firmware | All | All | All | All |
| Hardware | Netgear | R6080 | - | All | All | All |
| Hardware | Netgear | R6080 | - | All | All | All |
| Operating System | Netgear | R6080 Firmware | All | All | All | All |
| Operating System | Netgear | R6080 Firmware | All | All | All | All |
| Hardware | Netgear | R6120 | - | All | All | All |
| Hardware | Netgear | R6120 | - | All | All | All |
| Operating System | Netgear | R6120 Firmware | All | All | All | All |
| Operating System | Netgear | R6120 Firmware | All | All | All | All |
| Hardware | Netgear | R6220 | - | All | All | All |
| Hardware | Netgear | R6220 | - | All | All | All |
| Operating System | Netgear | R6220 Firmware | All | All | All | All |
| Operating System | Netgear | R6220 Firmware | All | All | All | All |
| Hardware | Netgear | R6260 | - | All | All | All |
| Hardware | Netgear | R6260 | - | All | All | All |
| Operating System | Netgear | R6260 Firmware | All | All | All | All |
| Operating System | Netgear | R6260 Firmware | All | All | All | All |
| Hardware | Netgear | R6700 | v2 | All | All | All |
| Hardware | Netgear | R6700 | v2 | All | All | All |
| Operating System | Netgear | R6700 Firmware | All | All | All | All |
| Operating System | Netgear | R6700 Firmware | All | All | All | All |
| Hardware | Netgear | R6800 | - | All | All | All |
| Hardware | Netgear | R6800 | - | All | All | All |
| Operating System | Netgear | R6800 Firmware | All | All | All | All |
| Operating System | Netgear | R6800 Firmware | All | All | All | All |
| Hardware | Netgear | R6900 | v2 | All | All | All |
| Hardware | Netgear | R6900 | v2 | All | All | All |
| Operating System | Netgear | R6900 Firmware | All | All | All | All |
| Operating System | Netgear | R6900 Firmware | All | All | All | All |
| Hardware | Netgear | Wnr2020 | - | All | All | All |
| Hardware | Netgear | Wnr2020 | - | All | All | All |
| Operating System | Netgear | Wnr2020 Firmware | All | All | All | All |
| Operating System | Netgear | Wnr2020 Firmware | All | All | All | All |
| Hardware | Netgear | Xr500 | - | All | All | All |
| Hardware | Netgear | Xr500 | - | All | All | All |
| Operating System | Netgear | Xr500 Firmware | All | All | All | All |
| Operating System | Netgear | Xr500 Firmware | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Security Advisory for Pre-Authentication Stack Overflow on Some Routers, Gateways, and Modems, PSV-2018-0295 | Answer | NETGEAR Support | CONFIRM | kb.netgear.com | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.