Tuesday, March 4, 2025
HomeComputer SecurityMultiple Vulnerabilities with NETGEAR Wireless Routers Allows Attackers to Access Sensitive Information

Multiple Vulnerabilities with NETGEAR Wireless Routers Allows Attackers to Access Sensitive Information

Published on

SIEM as a Service

Follow Us on Google News

Researchers discovered multiple vulnerabilities with some NETGEAR wireless routers that allow an attacker to access sensitive information. The vulnerability exists in the KCodes’ NetUSB kernel module.

Only specific models of NETGEAR wireless routers use the kernel module from KCodes; the module shares USB devices over TCP, which allows clients to connect with various drivers and software.

According to Talos researcher, Dave McDaniel, “An attacker could send specific packets on the local network to exploit vulnerabilities in NetUSB, forcing the routers to disclose sensitive information and even giving the attacker the ability to remotely execute code.”

Remote Kernel Arbitrary Memory read Vulnerability (CVE-2019-5016)

The arbitrary memory read vulnerability exists in the KCodes NetUSB.ko kernel module; an unauthenticated attacker can trigger this vulnerability form a local network by sending a crafted packet with an invalid memory read that could result in denial of service or remote information disclosure.

Remote Kernel Information Disclosure Vulnerability (CVE-2019-5017)

An exploitable information disclosure vulnerability that resides with KCodes NetUSB.ko kernel module let an unauthenticated, remote attacker send a crafted packet with containing an opcode that will trigger the kernel module to return several addresses.

Cisco reached out to KCodes and NETGEAR regarding this vulnerability, and the update is scheduled to release.

Also, Cisco decided to release the details of our vulnerability after surpassing its 90-day deadline.

You can follow us on Linkedin, Twitter, Facebook for daily Cybersecurity updates also you can take the Best Cybersecurity courses online to keep your self-updated.

Related Read:

New Variant of Mirai Malware Using 13 Different Exploits to Hack Routers Including D-Link, Linksys, GPON, Netgear, Huawei

More than 25,000 Linksys Smart Wi-Fi Routers Leaking Sensitive Information to the Public Internet

Verizon Fios Router Vulnerabilities Allows Attackers to Gain Complete Control Over the Network

Gurubaran
Gurubaran
Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Latest articles

Threat Actors Exploiting AES Encryption for Stealthy Payload Protection

Cybersecurity researchers have uncovered a surge in the use of Advanced Encryption Standard (AES)...

33.3 Million Cyber Attacks Targeted Mobile Devices in 2024 as Threats Surge

Kaspersky's latest report on mobile malware evolution in 2024 reveals a significant increase in...

Routers Under Attack as Scanning Attacks on IoT and Networks Surge to Record Highs

In a concerning trend, the frequency of scanning attacks targeting Internet of Things (IoT)...

Google Launches Shielded Email to Keep Your Address Hidden from Apps

Google is rolling out a new privacy-focused feature called Shielded Email, designed to prevent apps...

Supply Chain Attack Prevention

Free Webinar - Supply Chain Attack Prevention

Recent attacks like Polyfill[.]io show how compromised third-party components become backdoors for hackers. PCI DSS 4.0’s Requirement 6.4.3 mandates stricter browser script controls, while Requirement 12.8 focuses on securing third-party providers.

Join Vivekanand Gopalan (VP of Products – Indusface) and Phani Deepak Akella (VP of Marketing – Indusface) as they break down these compliance requirements and share strategies to protect your applications from supply chain attacks.

Discussion points

Meeting PCI DSS 4.0 mandates.
Blocking malicious components and unauthorized JavaScript execution.
PIdentifying attack surfaces from third-party dependencies.
Preventing man-in-the-browser attacks with proactive monitoring.

More like this

Threat Actors Exploiting AES Encryption for Stealthy Payload Protection

Cybersecurity researchers have uncovered a surge in the use of Advanced Encryption Standard (AES)...

33.3 Million Cyber Attacks Targeted Mobile Devices in 2024 as Threats Surge

Kaspersky's latest report on mobile malware evolution in 2024 reveals a significant increase in...

Routers Under Attack as Scanning Attacks on IoT and Networks Surge to Record Highs

In a concerning trend, the frequency of scanning attacks targeting Internet of Things (IoT)...