CVE-2019-5017 is an information disclosure vulnerability in the KCodes NetUSB.ko kernel module, impacting NETGEAR Nighthawk Routers and potentially other products utilizing this module for ReadySHARE Printer functionality. An unauthenticated, remote attacker can exploit this by sending a specially crafted packet to obtain kernel module addresses, which can then be used to calculate the module's dynamic base address for further exploitation. Rated Medium severity (CVSS 5.3), this vulnerability has a low attack complexity and could lead to information leakage. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
1.0.4.28_10.1.54CPE matchmatch criteria | cpe:2.3:o:netgear:r8000_firmware:1.0.4.28_10.1.54:*:*:*:*:*:*:* | ||
1.0.2.66CPE matchmatch criteria | cpe:2.3:a:kcodes:netusb.ko:1.0.2.66:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.