nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2022-21742 CVE-2022-21742
MEDIUM
Realtek USB FE/1GbE/2.5GbE/5GbE NIC Family - Buffer Overflow
Record summary
CVE-2022-21742 has a selected CVSS score of 6.2 (medium).
Description
Realtek USB driver has a buffer overflow vulnerability due to insufficient parameter length verification in the API function. An unauthenticated LAN attacker can exploit this vulnerability to disrupt services.
Description source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
USB FE/1GbE/2.5GbE/5GbE NIC FamilyBrowse Realtek / USB FE/1GbE/2.5GbE/5GbE NIC Family | CVE List | 10.28 to ≤ 10.39 | affected |
| 8.49 to ≤ 8.60 | affected | ||
| 7.42 to ≤ 7.53 | affected |
References
2twcert.org.tw
https://www.twcert.org.tw/tw/cp-132-6057-1cd0d-1.html