CVE-2004-0580

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
06/08/2004
Last modified:
07/11/2023

Description

DHCP on Linksys BEFSR11, BEFSR41, BEFSR81, and BEFSRU31 Cable/DSL Routers, firmware version 1.45.7, does not properly clear previously used buffer contents in a BOOTP reply packet, which allows remote attackers to obtain sensitive information.

Vulnerable products and versions

CPE From Up to
cpe:2.3:h:linksys:befcmu10:*:*:*:*:*:*:*:*
cpe:2.3:h:linksys:befn2ps4:*:*:*:*:*:*:*:*
cpe:2.3:h:linksys:befn2ps4:1.42.7:*:*:*:*:*:*:*
cpe:2.3:h:linksys:befsr11:1.40.2:*:*:*:*:*:*:*
cpe:2.3:h:linksys:befsr11:1.41:*:*:*:*:*:*:*
cpe:2.3:h:linksys:befsr11:1.42.3:*:*:*:*:*:*:*
cpe:2.3:h:linksys:befsr11:1.42.7:*:*:*:*:*:*:*
cpe:2.3:h:linksys:befsr11:1.43:*:*:*:*:*:*:*
cpe:2.3:h:linksys:befsr11:1.43.3:*:*:*:*:*:*:*
cpe:2.3:h:linksys:befsr11:1.44:*:*:*:*:*:*:*
cpe:2.3:h:linksys:befsr41:1.35:*:*:*:*:*:*:*
cpe:2.3:h:linksys:befsr41:1.36:*:*:*:*:*:*:*
cpe:2.3:h:linksys:befsr41:1.37:*:*:*:*:*:*:*
cpe:2.3:h:linksys:befsr41:1.38.5:*:*:*:*:*:*:*
cpe:2.3:h:linksys:befsr41:1.39:*:*:*:*:*:*:*