CVE-2021-45637
Summary
| CVE | CVE-2021-45637 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-12-26 01:15:00 UTC |
| Updated | 2022-01-07 18:52:00 UTC |
| Description | Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects R6260 before 1.1.0.76, R6800 before 1.2.0.62, R6700v2 before 1.2.0.62, R6900v2 before 1.2.0.62, R7450 before 1.2.0.62, AC2100 before 1.2.0.62, AC2400 before 1.2.0.62, and AC2600 before 1.2.0.62. |
Risk And Classification
Problem Types: CWE-787
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Netgear | Ac2100 | - | All | All | All |
| Operating System | Netgear | Ac2100 Firmware | All | All | All | All |
| Hardware | Netgear | Ac2400 | - | All | All | All |
| Operating System | Netgear | Ac2400 Firmware | All | All | All | All |
| Hardware | Netgear | Ac2600 | - | All | All | All |
| Operating System | Netgear | Ac2600 Firmware | All | All | All | All |
| Hardware | Netgear | R6260 | - | All | All | All |
| Operating System | Netgear | R6260 Firmware | All | All | All | All |
| Hardware | Netgear | R6700v2 | - | All | All | All |
| Operating System | Netgear | R6700v2 Firmware | All | All | All | All |
| Hardware | Netgear | R6800 | - | All | All | All |
| Operating System | Netgear | R6800 Firmware | All | All | All | All |
| Hardware | Netgear | R6900v2 | - | All | All | All |
| Operating System | Netgear | R6900v2 Firmware | All | All | All | All |
| Hardware | Netgear | R7450 | - | All | All | All |
| Operating System | Netgear | R7450 Firmware | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Security Advisory for Pre-Authentication Stack Overflow on Some Routers, PSV-2019-0081 | Answer | NETGEAR Support | MISC | kb.netgear.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.