Realtek Vulnerabilities and Affected Products
Vulnerabilities associated with AP-Router SDK.
Products
Clear product- rtl819x_software_development_kit20 vulnerabilities
- rtl819x Jungle SDK19 vulnerabilities
- Linux/Android Bluetooth Mesh SDK4 vulnerabilities
- rtl81xx SDK3 vulnerabilities
- RTL8111FP-CG2 vulnerabilities
- RTL8811AU2 vulnerabilities
- rtsper_pcie_card_reader_driver2 vulnerabilities
- sd_card_reader_driver2 vulnerabilities
- ADSL/PON Modem SoC1 vulnerability
- AP-Router SDK1 vulnerability
- Bluetooth HCI Adaptor1 vulnerability
- GPON router1 vulnerability
- HDA driver1 vulnerability
- io_driver1 vulnerability
- Jungle Software Development Kit (SDK)1 vulnerability
- Realtek Andrea RT Filters1 vulnerability
- Realtek Audio Service1 vulnerability
- Realtek High Definition Audio Driver1 vulnerability
- RTK IIS Codec Service1 vulnerability
- RTL8111EP-CG1 vulnerability
- rtl819x_jungle_software_development_kit1 vulnerability
- rtl8762ekf-evb_firmware1 vulnerability
- rtsper_usb_card_reader_driver1 vulnerability
- SDK1 vulnerability
- USB FE/1GbE/2.5GbE/5GbE NIC Family1 vulnerability
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2021-35395CRITICAL | Realtek AP-Router SDK Buffer Overflow VulnerabilityRealtek Jungle SDK version v2.x up to v3.4.14B provides an HTTP web server exposing a management interface that can be used to configure the access point. Two versions of this management interface exists: one based on Go-Ahead named webs and another based on Boa named boa. Both of them are affected by these vulnerabilities. Specifically, these binaries are vulnerable to the following issues: - stack buffer overflow in formRebootCheck due to unsafe copy of submit-url parameter - stack buffer over… | CVSS9.8v3.1 | EPSS98% | PoCs0 | SignalsListed in CISA KEVNo known ransomware use1 Nuclei template | STIX |