CVE-2021-34991
Summary
| CVE | CVE-2021-34991 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-11-15 16:15:00 UTC |
| Updated | 2021-11-17 16:33:00 UTC |
| Description | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6400v2 1.0.4.106_10.0.80 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the UPnP service, which listens on TCP port 5000 by default. When parsing the uuid request header, the process does not properly validate the length of user-supplied data prior to copying it to a fixed-length stack-based buffer. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-14110. |
Risk And Classification
Problem Types: CWE-787
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Netgear | Cax80 | - | All | All | All |
| Operating System | Netgear | Cax80 Firmware | All | All | All | All |
| Hardware | Netgear | D6220 | - | All | All | All |
| Operating System | Netgear | D6220 Firmware | All | All | All | All |
| Hardware | Netgear | D6400 | - | All | All | All |
| Operating System | Netgear | D6400 Firmware | All | All | All | All |
| Hardware | Netgear | D7000v2 | - | All | All | All |
| Operating System | Netgear | D7000v2 Firmware | All | All | All | All |
| Hardware | Netgear | Dc112a | - | All | All | All |
| Operating System | Netgear | Dc112a Firmware | All | All | All | All |
| Hardware | Netgear | Dgn2200v4 | - | All | All | All |
| Operating System | Netgear | Dgn2200v4 Firmware | All | All | All | All |
| Hardware | Netgear | Ex3700 | - | All | All | All |
| Operating System | Netgear | Ex3700 Firmware | All | All | All | All |
| Hardware | Netgear | Ex3800 | - | All | All | All |
| Operating System | Netgear | Ex3800 Firmware | All | All | All | All |
| Hardware | Netgear | Ex6120 | - | All | All | All |
| Operating System | Netgear | Ex6120 Firmware | All | All | All | All |
| Hardware | Netgear | Ex6130 | - | All | All | All |
| Operating System | Netgear | Ex6130 Firmware | All | All | All | All |
| Hardware | Netgear | R6400 | - | All | All | All |
| Hardware | Netgear | R6400v2 | - | All | All | All |
| Operating System | Netgear | R6400v2 Firmware | All | All | All | All |
| Operating System | Netgear | R6400 Firmware | All | All | All | All |
| Hardware | Netgear | R6700v3 | - | All | All | All |
| Operating System | Netgear | R6700v3 Firmware | All | All | All | All |
| Hardware | Netgear | R6900p | - | All | All | All |
| Operating System | Netgear | R6900p Firmware | All | All | All | All |
| Hardware | Netgear | R7000 | - | All | All | All |
| Hardware | Netgear | R7000p | - | All | All | All |
| Operating System | Netgear | R7000p Firmware | All | All | All | All |
| Operating System | Netgear | R7000 Firmware | All | All | All | All |
| Hardware | Netgear | R7100lg | - | All | All | All |
| Operating System | Netgear | R7100lg Firmware | All | All | All | All |
| Hardware | Netgear | R7850 | - | All | All | All |
| Operating System | Netgear | R7850 Firmware | All | All | All | All |
| Hardware | Netgear | R7900p | - | All | All | All |
| Operating System | Netgear | R7900p Firmware | All | All | All | All |
| Hardware | Netgear | R7960p | - | All | All | All |
| Operating System | Netgear | R7960p Firmware | All | All | All | All |
| Hardware | Netgear | R8000 | - | All | All | All |
| Hardware | Netgear | R8000p | - | All | All | All |
| Operating System | Netgear | R8000p Firmware | All | All | All | All |
| Operating System | Netgear | R8000 Firmware | All | All | All | All |
| Hardware | Netgear | R8300 | - | All | All | All |
| Operating System | Netgear | R8300 Firmware | All | All | All | All |
| Hardware | Netgear | R8500 | - | All | All | All |
| Operating System | Netgear | R8500 Firmware | All | All | All | All |
| Hardware | Netgear | Rax15 | - | All | All | All |
| Operating System | Netgear | Rax15 Firmware | All | All | All | All |
| Hardware | Netgear | Rax20 | - | All | All | All |
| Hardware | Netgear | Rax200 | - | All | All | All |
| Operating System | Netgear | Rax200 Firmware | All | All | All | All |
| Operating System | Netgear | Rax20 Firmware | All | All | All | All |
| Hardware | Netgear | Rax35v2 | - | All | All | All |
| Operating System | Netgear | Rax35v2 Firmware | All | All | All | All |
| Hardware | Netgear | Rax38v2 | - | All | All | All |
| Operating System | Netgear | Rax38v2 Firmware | All | All | All | All |
| Hardware | Netgear | Rax40v2 | - | All | All | All |
| Operating System | Netgear | Rax40v2 Firmware | All | All | All | All |
| Hardware | Netgear | Rax42 | - | All | All | All |
| Operating System | Netgear | Rax42 Firmware | All | All | All | All |
| Hardware | Netgear | Rax43 | - | All | All | All |
| Operating System | Netgear | Rax43 Firmware | All | All | All | All |
| Hardware | Netgear | Rax45 | - | All | All | All |
| Operating System | Netgear | Rax45 Firmware | All | All | All | All |
| Hardware | Netgear | Rax48 | - | All | All | All |
| Operating System | Netgear | Rax48 Firmware | All | All | All | All |
| Hardware | Netgear | Rax50 | - | All | All | All |
| Hardware | Netgear | Rax50s | - | All | All | All |
| Operating System | Netgear | Rax50s Firmware | All | All | All | All |
| Operating System | Netgear | Rax50 Firmware | All | All | All | All |
| Hardware | Netgear | Rax75 | - | All | All | All |
| Operating System | Netgear | Rax75 Firmware | All | All | All | All |
| Hardware | Netgear | Rax80 | - | All | All | All |
| Operating System | Netgear | Rax80 Firmware | All | All | All | All |
| Hardware | Netgear | Raxe450 | - | All | All | All |
| Operating System | Netgear | Raxe450 Firmware | All | All | All | All |
| Hardware | Netgear | Raxe500 | - | All | All | All |
| Operating System | Netgear | Raxe500 Firmware | All | All | All | All |
| Hardware | Netgear | Rs400 | - | All | All | All |
| Operating System | Netgear | Rs400 Firmware | All | All | All | All |
| Hardware | Netgear | Wndr3400v3 | - | All | All | All |
| Operating System | Netgear | Wndr3400v3 Firmware | All | All | All | All |
| Hardware | Netgear | Wnr3500lv2 | - | All | All | All |
| Operating System | Netgear | Wnr3500lv2 Firmware | All | All | All | All |
| Hardware | Netgear | Xr300 | - | All | All | All |
| Operating System | Netgear | Xr300 Firmware | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Security Advisory for Pre-Authentication Buffer Overflow on Multiple Products, PSV-2021-0168 | Answer | NETGEAR Support | MISC | kb.netgear.com | |
| ZDI-21-1303 | Zero Day Initiative | MISC | www.zerodayinitiative.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.