ASUS RT-N56U 'apps_name' and 'apps_flag' Parameters Buffer Overflow Vulnerability
BID:65046
Info
ASUS RT-N56U 'apps_name' and 'apps_flag' Parameters Buffer Overflow Vulnerability
| Bugtraq ID: | 65046 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2013-6343 |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 21 2014 12:00AM |
| Updated: | Jan 21 2014 12:00AM |
| Credit: | Jacob Holcomb |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
ASUS RT-N56U 'apps_name' and 'apps_flag' Parameters Buffer Overflow Vulnerability
ASUS RT-N56U router is prone to a buffer-overflow vulnerability because it fails to perform adequate boundary-checks on user-supplied data.
Successful exploits may allow an attacker to execute arbitrary code within the context of the affected device. Failed attempts will likely cause a denial-of-service condition.
ASUS RT-N56U running firmware 3.0.0.4.374_979 and prior are vulnerable.
ASUS RT-N56U router is prone to a buffer-overflow vulnerability because it fails to perform adequate boundary-checks on user-supplied data.
Successful exploits may allow an attacker to execute arbitrary code within the context of the affected device. Failed attempts will likely cause a denial-of-service condition.
ASUS RT-N56U running firmware 3.0.0.4.374_979 and prior are vulnerable.
Exploit / POC
ASUS RT-N56U 'apps_name' and 'apps_flag' Parameters Buffer Overflow Vulnerability
Attackers can use standard, readily available tools to exploit this issue.
Attackers can use standard, readily available tools to exploit this issue.
Solution / Fix
ASUS RT-N56U 'apps_name' and 'apps_flag' Parameters Buffer Overflow Vulnerability
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
ASUS RT-N56U 'apps_name' and 'apps_flag' Parameters Buffer Overflow Vulnerability
References:
References: