Buffer overflow in F@st 3890 and F@st 3686 - CVE-2019-19494

 

Buffer overflow in F@st 3890 and F@st 3686 - CVE-2019-19494

Published: January 14, 2020 / Updated: April 1, 2020


Vulnerability identifier: #VU24232
CSH Severity: High
CVSS v4.0: CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:A/U:Amber
CVE-ID: CVE-2019-19494
CWE-ID: CWE-119
Exploitation vector: Remote access
Exploit availability: Public exploit is available
Vendor: Sagemcom
Affected software:
F@st 3890
F@st 3686

Detailed vulnerability description

The vulnerability allows a remote attacker to execute arbitrary code on the target system.

The vulnerability exists due to a boundary error when processing packets sent to spectrum analyzer build-in feature. By default the affected router accepts requests from local network only, however an attacker can craft a specially crafted webpage and use victim's browser to deliver malicious request to the affected router, e.g. via websockets and a specially crafted JSON payload.

Successful exploitation of this vulnerability may result in complete compromise of the affected router.

Note, this vulnerability was dubbed Cable Haunt by the researcher.


How to mitigate CVE-2019-19494

Install updates from vendor's website.

Sources