Linksys Wireless-G ADSL Gateway WAG54GS V2.0 Remote Buffer Overflow Vulnerability
BID:32949
Info
Linksys Wireless-G ADSL Gateway WAG54GS V2.0 Remote Buffer Overflow Vulnerability
| Bugtraq ID: | 32949 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 21 2008 12:00AM |
| Updated: | Dec 29 2008 10:32PM |
| Credit: | r0ut3r |
| Vulnerable: |
Linksys Wireless-G ADSL Gateway WAG54GS V2.0 1.2.20 (Firmware) |
| Not Vulnerable: | |
Discussion
Linksys Wireless-G ADSL Gateway WAG54GS V2.0 Remote Buffer Overflow Vulnerability
Linksys Wireless-G ADSL Gateway WAG54GS V2.0 is prone to a remote buffer-overflow vulnerability because the software fails to sufficiently verify buffer boundaries before copying user-supplied data.
Exploiting this vulnerability may allow remote attackers to execute arbitrary code in the context of the affected application.
Linksys Wireless-G ADSL Gateway WAG54GS V2.0 running firmware 1.02.20 is reported vulnerable; other versions may also be affected.
NOTE: Reports indicate that this issue may be identical to or related to the vulnerability described in BID 6301 (Multiple Linksys Devices GET Request Buffer Overflow Vulnerability), but this could not be confirmed. We will update or retire this BID when more details become available.
Linksys Wireless-G ADSL Gateway WAG54GS V2.0 is prone to a remote buffer-overflow vulnerability because the software fails to sufficiently verify buffer boundaries before copying user-supplied data.
Exploiting this vulnerability may allow remote attackers to execute arbitrary code in the context of the affected application.
Linksys Wireless-G ADSL Gateway WAG54GS V2.0 running firmware 1.02.20 is reported vulnerable; other versions may also be affected.
NOTE: Reports indicate that this issue may be identical to or related to the vulnerability described in BID 6301 (Multiple Linksys Devices GET Request Buffer Overflow Vulnerability), but this could not be confirmed. We will update or retire this BID when more details become available.
Exploit / POC
Linksys Wireless-G ADSL Gateway WAG54GS V2.0 Remote Buffer Overflow Vulnerability
A proof of concept is available.
A proof of concept is available.
Solution / Fix
Linksys Wireless-G ADSL Gateway WAG54GS V2.0 Remote Buffer Overflow Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
Linksys Wireless-G ADSL Gateway WAG54GS V2.0 Remote Buffer Overflow Vulnerability
References:
References:
- Linksys Wireless ADSL Router (WAG54G V.2) httpd (r0ut3r)
- WAG54G Wireless-G ADSL Gateway (Linksys)