Description
Stack buffer overflow in networkmap in Asuswrt-Merlin firmware for ASUS devices and ASUS firmware for ASUS RT-AC5300, RT_AC1900P, RT-AC68U, RT-AC68P, RT-AC88U, RT-AC66U, RT-AC66U_B1, RT-AC58U, RT-AC56U, RT-AC55U, RT-AC52U, RT-AC51U, RT-N18U, RT-N66U, RT-N56U, RT-AC3200, RT-AC3100, RT_AC1200GU, RT_AC1200G, RT-AC1200, RT-AC53, RT-N12HP, RT-N12HP_B1, RT-N12D1, RT-N12+, RT_N12+_PRO, RT-N16, and RT-N300 devices allows remote attackers to execute arbitrary code on the router by hosting a crafted device description XML document (that includes a serviceType element) at a URL specified within a Location header in an SSDP response.
Published: 2017-07-16
Score: 7.8 High
EPSS: 1.3% Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

No vendor fix or workaround currently provided.

Additional remediation guidance may be available on OpenCVE Cloud.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2017-2974 Stack buffer overflow in networkmap in Asuswrt-Merlin firmware for ASUS devices and ASUS firmware for ASUS RT-AC5300, RT_AC1900P, RT-AC68U, RT-AC68P, RT-AC88U, RT-AC66U, RT-AC66U_B1, RT-AC58U, RT-AC56U, RT-AC55U, RT-AC52U, RT-AC51U, RT-N18U, RT-N66U, RT-N56U, RT-AC3200, RT-AC3100, RT_AC1200GU, RT_AC1200G, RT-AC1200, RT-AC53, RT-N12HP, RT-N12HP_B1, RT-N12D1, RT-N12+, RT_N12+_PRO, RT-N16, and RT-N300 devices allows remote attackers to execute arbitrary code on the router by hosting a crafted device description XML document (that includes a serviceType element) at a URL specified within a Location header in an SSDP response.
History

No history.

Subscriptions

Asuswrt-merlin Project Rt-ac1200 Rt-ac1200 Firmware Rt-ac3100 Rt-ac3100 Firmware Rt-ac3200 Rt-ac3200 Firmware Rt-ac51u Rt-ac51u Firmware Rt-ac52u Rt-ac52u Firmware Rt-ac53 Rt-ac5300 Rt-ac5300 Firmware Rt-ac53 Firmware Rt-ac55u Rt-ac55u Firmware Rt-ac56u Rt-ac56u Firmware Rt-ac58u Rt-ac58u Firmware Rt-ac66u Rt-ac66u B1 Rt-ac66u B1 Firmware Rt-ac66u Firmware Rt-ac68p Rt-ac68p Firmware Rt-ac68u Rt-ac68u Firmware Rt-ac88u Rt-ac88u Firmware Rt-n12\+ Rt-n12\+ Firmware Rt-n12d1 Rt-n12d1 Firmware Rt-n12hp Rt-n12hp B1 Rt-n12hp B1 Firmware Rt-n12hp Firmware Rt-n16 Rt-n16 Firmware Rt-n18u Rt-n18u Firmware Rt-n300 Rt-n300 Firmware Rt-n56u Rt-n56u Firmware Rt-n66u Rt-n66u Firmware Rt Ac1200g Rt Ac1200g Firmware Rt Ac1200gu Rt Ac1200gu Firmware Rt Ac1900p Rt Ac1900p Firmware Rt N12\+ Pro Rt N12\+ Pro Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-05T18:05:30.586Z

Reserved: 2017-07-16T00:00:00.000Z

Link: CVE-2017-11345

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2017-07-17T13:18:20.953

Modified: 2026-05-13T00:24:29.033

Link: CVE-2017-11345

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses