Lucene search

K
jvnJapan Vulnerability NotesJVN:72640744
HistoryOct 28, 2011 - 12:00 a.m.

JVN#72640744: Multiple D-Link products vulnerable to buffer overflow

2011-10-2800:00:00
Japan Vulnerability Notes
jvn.jp
24

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

0.092 Low

EPSS

Percentile

94.7%

Multiple D-Link products contain a buffer overflow vulnerability due to a SSH implementation issue.

Impact

A remote attacker may cause a denial of service (DoS) or execute arbitrary code.

Solution

Update the Firmware
Update to the latest version of firmware according to the information provided by the developer.

Apply a workaround
The following workaround may mitigate the affects of this vulnerability.

  • Disable the SSH function

Products Affected

  • DES-3800 series firmware prior to R4.50B052
  • DWL-2100AP firmware prior to 2.50RC548
  • DWL-3200AP firmware prior to 2.55RC549

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

0.092 Low

EPSS

Percentile

94.7%

Related for JVN:72640744