8.8

CVE-2022-27641

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6700v3 1.0.4.120_10.0.91 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the NetUSB module. The issue results from the lack of proper validation of user-supplied data, which can result in an integer overflow before allocating a buffer. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-15806.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Netgear ≫ D7800 Firmware Version < 1.0.1.68
   Netgear ≫ D7800 Version -
Netgear ≫ Ex6200 Firmware Version < 1.0.1.90
   Netgear ≫ Ex6200 Version v2
Netgear ≫ Ex8000 Firmware Version < 1.0.1.240
   Netgear ≫ Ex8000 Version -
Netgear ≫ R6220 Firmware Version < 1.1.0.112
   Netgear ≫ R6220 Version -
Netgear ≫ R6230 Firmware Version < 1.1.0.112
   Netgear ≫ R6230 Version -
Netgear ≫ R6400 Firmware Version < 1.0.4.122
   Netgear ≫ R6400 Version v2
Netgear ≫ R6700 Firmware Version < 1.0.4.122
   Netgear ≫ R6700 Version v3
Netgear ≫ R7000 Firmware Version < 1.0.11.130
   Netgear ≫ R7000 Version -
Netgear ≫ R7800 Firmware Version < 1.0.2.90
   Netgear ≫ R7800 Version -
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.24% 0.657
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 8.8 2.8 5.9
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Trend Micro 8.8 2.8 5.9
CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CWE-190 Integer Overflow or Wraparound

The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.

https://kb.netgear.com/000064437/Security-Advisory-for-Pre-Authentication-Buffer-Overflow-on-Multiple-Products-PSV-2021-0278
Vendor Advisory
https://www.zerodayinitiative.com/advisories/ZDI-22-544/
Third Party Advisory
VDB Entry