CVE-2019-6989
TP-LINK TL-WR940N / TL-WR941ND - Buffer Overflow
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
1Exploited in Wild
-Decision
Descriptions
TP-Link TL-WR940N is vulnerable to a stack-based buffer overflow, caused by improper bounds checking by the ipAddrDispose function. By sending specially crafted ICMP echo request packets, a remote authenticated attacker could overflow a buffer and execute arbitrary code on the system with elevated privileges.
TP-Link TL-WR940N es vulnerable a un desbordamiento de búfer basado en la pila, causado por una verificación de límites inadecuada por la función ipAddrDispose. Al enviar paquetes de solicitud de eco ICMP especialmente diseñados, un atacante remoto identificado podría desbordar un búfer y ejecutar código arbitrario en el sistema con privilegios elevados.
TP-LINK models TL-WR940N and TL-WR941ND suffer from a buffer overflow vulnerability.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2019-01-28 CVE Reserved
- 2019-04-09 CVE Published
- 2023-09-30 EPSS Updated
- 2024-08-04 CVE Updated
- 2024-08-04 First Exploit
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-787: Out-of-bounds Write
CAPEC
References (2)
URL | Tag | Source |
---|---|---|
http://packetstormsecurity.com/files/152458/TP-LINK-TL-WR940N-TL-WR941ND-Buffer-Overflow.html | X_refsource_misc |
URL | Date | SRC |
---|---|---|
https://www.exploit-db.com/exploits/46678 | 2024-08-04 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Tp-link Search vendor "Tp-link" | Tl-wr940n Firmware Search vendor "Tp-link" for product "Tl-wr940n Firmware" | - | - |
Affected
| in | Tp-link Search vendor "Tp-link" | Tl-wr940n Search vendor "Tp-link" for product "Tl-wr940n" | - | - |
Safe
|
Tp-link Search vendor "Tp-link" | Tl-wr941nd Firmware Search vendor "Tp-link" for product "Tl-wr941nd Firmware" | - | - |
Affected
| in | Tp-link Search vendor "Tp-link" | Tl-wr941nd Search vendor "Tp-link" for product "Tl-wr941nd" | - | - |
Safe
|