CVE-2021-34201

D-Link DIR-2640-US 1.01B04 is vulnerable to Buffer Overflow. There are multiple out-of-bounds vulnerabilities in some processes of D-Link AC2600(DIR-2640). Local ordinary users can overwrite the global variables in the .bss section, causing the process crashes or changes.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:dlink:dir-2640-us_firmware:1.01b04:*:*:*:*:*:*:*
cpe:2.3:h:dlink:dir-2640-us:-:*:*:*:*:*:*:*

History

14 Feb 2024, 01:17

Type Values Removed Values Added
References () http://dir-2640-us.com - Product () http://dir-2640-us.com - Product, URL Repurposed

24 Jun 2021, 15:39

Type Values Removed Values Added
References (MISC) http://d-link.com - (MISC) http://d-link.com - Product
References (MISC) https://github.com/liyansong2018/CVE/tree/main/2021/CVE-2021-34201 - (MISC) https://github.com/liyansong2018/CVE/tree/main/2021/CVE-2021-34201 - Exploit, Third Party Advisory
References (MISC) https://www.dlink.com/en/security-bulletin/ - (MISC) https://www.dlink.com/en/security-bulletin/ - Vendor Advisory
References (MISC) http://dir-2640-us.com - (MISC) http://dir-2640-us.com - Product
CPE cpe:2.3:h:dlink:dir-2640-us:-:*:*:*:*:*:*:*
cpe:2.3:o:dlink:dir-2640-us_firmware:1.01b04:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : 3.6
v3 : 7.1
CWE CWE-787

16 Jun 2021, 21:01

Type Values Removed Values Added
New CVE

Information

Published : 2021-06-16 20:15

Updated : 2024-02-14 01:17


NVD link : CVE-2021-34201

Mitre link : CVE-2021-34201

CVE.ORG link : CVE-2021-34201


JSON object : View

Products Affected

dlink

  • dir-2640-us
  • dir-2640-us_firmware
CWE
CWE-787

Out-of-bounds Write