NETGEAR RAX30 soap_serverd Stack-based Buffer Overflow Authentication Bypass Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR RAX30 routers. Authentication is not required to exploit this vulnerability.
The specific flaw exists within the soap_serverd binary. When parsing SOAP message headers, the process does not properly validate the length of user-supplied data prior to copying it to a fixed-length stack-based buffer. An attacker can leverage this vulnerability to bypass authentication on the system. Was ZDI-CAN-19839.
References
Link | Resource |
---|---|
https://kb.netgear.com/000065619/Security-Advisory-for-Multiple-Vulnerabilities-on-the-RAX30-PSV-2022-0348 | Vendor Advisory |
https://www.zerodayinitiative.com/advisories/ZDI-23-499/ | Third Party Advisory |
https://kb.netgear.com/000065619/Security-Advisory-for-Multiple-Vulnerabilities-on-the-RAX30-PSV-2022-0348 | Vendor Advisory |
https://www.zerodayinitiative.com/advisories/ZDI-23-499/ | Third Party Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
03 Jan 2025, 17:34
Type | Values Removed | Values Added |
---|---|---|
References | () https://kb.netgear.com/000065619/Security-Advisory-for-Multiple-Vulnerabilities-on-the-RAX30-PSV-2022-0348 - Vendor Advisory | |
References | () https://www.zerodayinitiative.com/advisories/ZDI-23-499/ - Third Party Advisory | |
CWE | CWE-787 | |
CPE | cpe:2.3:h:netgear:rax30:-:*:*:*:*:*:*:* cpe:2.3:o:netgear:rax30_firmware:*:*:*:*:*:*:*:* |
|
First Time |
Netgear rax30 Firmware
Netgear Netgear rax30 |
Information
Published : 2024-05-03 02:15
Updated : 2025-01-03 17:34
NVD link : CVE-2023-27368
Mitre link : CVE-2023-27368
CVE.ORG link : CVE-2023-27368
JSON object : View
Products Affected
netgear
- rax30
- rax30_firmware