Asus RT-AC68U <3.0.0.4.385.20633 and RT-AC5300 <3.0.0.4.384.82072 are affected by a buffer overflow in blocking_request.cgi.
The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer, leading to a buffer overflow.
Link | Tags |
---|---|
http://asus.com | vendor advisory |
http://rt-ac68u.com | url repurposed broken link |
https://github.com/IBUILI/Asus | third party advisory exploit |