CVE-2023-6397
20.02.2024, 02:15
A null pointer dereference vulnerability in Zyxel ATP series firmware versions from 4.32 through 5.37 Patch 1 and USG FLEX series firmware versions from 4.50 through 5.37 Patch 1 could allow a LAN-based attacker to cause denial-of-service (DoS) conditions by downloading a crafted RAR compressed file onto a LAN-side host if the firewall has the Anti-Malware feature enabled.Enginsight
Vendor | Product | Version |
---|---|---|
zyxel | atp100_firmware | 4.32 ≤ 𝑥 < 5.37 |
zyxel | atp100_firmware | 5.37 |
zyxel | atp100_firmware | 5.37:patch1 |
zyxel | atp100w_firmware | 4.32 ≤ 𝑥 < 5.37 |
zyxel | atp100w_firmware | 5.37 |
zyxel | atp100w_firmware | 5.37:patch1 |
zyxel | atp200_firmware | 4.32 ≤ 𝑥 < 5.37 |
zyxel | atp200_firmware | 5.37 |
zyxel | atp200_firmware | 5.37:patch1 |
zyxel | atp500_firmware | 4.32 ≤ 𝑥 < 5.37 |
zyxel | atp500_firmware | 5.37 |
zyxel | atp500_firmware | 5.37:patch1 |
zyxel | atp700_firmware | 4.32 ≤ 𝑥 < 5.37 |
zyxel | atp700_firmware | 5.37 |
zyxel | atp700_firmware | 5.37:patch1 |
zyxel | atp800_firmware | 4.32 ≤ 𝑥 < 5.37 |
zyxel | atp800_firmware | 5.37 |
zyxel | atp800_firmware | 5.37:patch1 |
zyxel | usg_flex_100_firmware | 4.50 ≤ 𝑥 < 5.37 |
zyxel | usg_flex_100_firmware | 5.37 |
zyxel | usg_flex_100_firmware | 5.37:patch1 |
zyxel | usg_flex_100ax_firmware | 4.50 ≤ 𝑥 < 5.37 |
zyxel | usg_flex_100ax_firmware | 5.37 |
zyxel | usg_flex_100ax_firmware | 5.37:patch1 |
zyxel | usg_flex_100h_firmware | 4.50 ≤ 𝑥 < 5.37 |
zyxel | usg_flex_100h_firmware | 5.37 |
zyxel | usg_flex_100h_firmware | 5.37:patch1 |
zyxel | usg_flex_100w_firmware | 4.50 ≤ 𝑥 < 5.37 |
zyxel | usg_flex_100w_firmware | 5.37 |
zyxel | usg_flex_100w_firmware | 5.37:patch1 |
zyxel | usg_flex_200_firmware | 4.50 ≤ 𝑥 < 5.37 |
zyxel | usg_flex_200_firmware | 5.37 |
zyxel | usg_flex_200_firmware | 5.37:patch1 |
zyxel | usg_flex_200h_firmware | 4.50 ≤ 𝑥 < 5.37 |
zyxel | usg_flex_200h_firmware | 5.37 |
zyxel | usg_flex_200h_firmware | 5.37:patch1 |
zyxel | usg_flex_200hp_firmware | 4.50 ≤ 𝑥 < 5.37 |
zyxel | usg_flex_200hp_firmware | 5.37 |
zyxel | usg_flex_200hp_firmware | 5.37:patch1 |
zyxel | usg_flex_50_firmware | 4.50 ≤ 𝑥 < 5.37 |
zyxel | usg_flex_50_firmware | 5.37 |
zyxel | usg_flex_50_firmware | 5.37:patch1 |
zyxel | usg_flex_500_firmware | 4.50 ≤ 𝑥 < 5.37 |
zyxel | usg_flex_500_firmware | 5.37 |
zyxel | usg_flex_500_firmware | 5.37:patch1 |
zyxel | usg_flex_500h_firmware | 4.50 ≤ 𝑥 < 5.37 |
zyxel | usg_flex_500h_firmware | 5.37 |
zyxel | usg_flex_500h_firmware | 5.37:patch1 |
zyxel | usg_flex_50w_firmware | 4.50 ≤ 𝑥 < 5.37 |
zyxel | usg_flex_50w_firmware | 5.37 |
zyxel | usg_flex_50w_firmware | 5.37:patch1 |
zyxel | usg_flex_700_firmware | 4.50 ≤ 𝑥 < 5.37 |
zyxel | usg_flex_700_firmware | 5.37 |
zyxel | usg_flex_700_firmware | 5.37:patch1 |
zyxel | usg_flex_700h_firmware | 4.50 ≤ 𝑥 < 5.37 |
zyxel | usg_flex_700h_firmware | 5.37 |
zyxel | usg_flex_700h_firmware | 5.37:patch1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration