CVE-2021-3128
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 3.9 / Impact: 3.6
Source: NVD
Description
In ASUS RT-AX3000, ZenWiFi AX (XT8), RT-AX88U, and other ASUS routers with firmware < 3.0.0.4.386.42095 or < 9.0.0.4.386.41994, when IPv6 is used, a routing loop can occur that generates excessive network traffic between an affected device and its upstream ISP's router. This occurs when a link prefix route points to a point-to-point link, a destination IPv6 address belongs to the prefix and is not a local IPv6 address, and a router advertisement is received with at least one global unique IPv6 prefix for which the on-link flag is set.
Affected (54)
Products: Asus: Zenwifi Ax (xt8) Firmware, Rt Ax3000 Firmware, Rt Ax55 Firmware, Rt Ax56u Firmware, Rt Ax58u Firmware, Rt Ax68u Firmware, Rt Ax82u Firmware, Rt Ax86u Firmware, Rt Ax88u Firmware, Rt Ac66u B1 Firmware, Rt Ac1750 B1 Firmware, Rt Ac1900 Firmware, Rt Ac1900p Firmware, Rt Ac1900u Firmware, Rt Ac2900 Firmware, Rt Ac3100 Firmware, Rt Ac5300 Firmware, Rt Ac58u Firmware, Rt Ac65u Firmware, Rt Ac68p Firmware, Rt Ac68r Firmware, Rt Ac68rw Firmware, Rt Ac68u Firmware, Rt Ac68w Firmware, Rt Ac85u Firmware, Rt Ac86u Firmware, Rt Ac88u Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 3.0.0.4.386.42095 |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Before 9.0.0.4.386.41994 |
| Running on/with | Platform Versions |
|---|---|
Asus Zenwifi Ax (xt8) | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Before 3.0.0.4.386.42095 |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Before 9.0.0.4.386.41994 |
| Running on/with | Platform Versions |
|---|---|
Asus Rt Ax3000 | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Before 3.0.0.4.386.42095 |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Before 9.0.0.4.386.41994 |
| Running on/with | Platform Versions |
|---|---|
Asus Rt Ax55 | All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Before 3.0.0.4.386.42095 |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| Before 9.0.0.4.386.41994 |
| Running on/with | Platform Versions |
|---|---|
Asus Rt Ax56u | All versions |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| Before 3.0.0.4.386.42095 |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| Before 9.0.0.4.386.41994 |
| Running on/with | Platform Versions |
|---|---|
Asus Rt Ax58u | All versions |
Configuration K
| Vulnerable Software | Affected Versions |
|---|---|
| Before 3.0.0.4.386.42095 |
Configuration L
| Vulnerable Software | Affected Versions |
|---|---|
| Before 9.0.0.4.386.41994 |
| Running on/with | Platform Versions |
|---|---|
Asus Rt Ax68u | All versions |
Configuration M
| Vulnerable Software | Affected Versions |
|---|---|
| Before 3.0.0.4.386.42095 |
Configuration N
| Vulnerable Software | Affected Versions |
|---|---|
| Before 9.0.0.4.386.41994 |
| Running on/with | Platform Versions |
|---|---|
Asus Rt Ax82u | All versions |
Configuration O
| Vulnerable Software | Affected Versions |
|---|---|
| Before 3.0.0.4.386.42095 |
Configuration P
| Vulnerable Software | Affected Versions |
|---|---|
| Before 9.0.0.4.386.41994 |
| Running on/with | Platform Versions |
|---|---|
Asus Rt Ax86u | All versions |
Configuration Q
| Vulnerable Software | Affected Versions |
|---|---|
| Before 3.0.0.4.386.42095 |
Configuration R
| Vulnerable Software | Affected Versions |
|---|---|
| Before 9.0.0.4.386.41994 |
| Running on/with | Platform Versions |
|---|---|
Asus Rt Ax88u | All versions |
Configuration S
| Vulnerable Software | Affected Versions |
|---|---|
| Before 3.0.0.4.386.42095 |
Configuration T
| Vulnerable Software | Affected Versions |
|---|---|
| Before 9.0.0.4.386.41994 |
| Running on/with | Platform Versions |
|---|---|
Asus Rt Ac66u B1 | All versions |
Configuration U
| Vulnerable Software | Affected Versions |
|---|---|
| Before 3.0.0.4.386.42095 |
Configuration V
| Vulnerable Software | Affected Versions |
|---|---|
| Before 9.0.0.4.386.41994 |
| Running on/with | Platform Versions |
|---|---|
Asus Rt Ac1750 B1 | All versions |
Configuration W
| Vulnerable Software | Affected Versions |
|---|---|
| Before 3.0.0.4.386.42095 |
Configuration X
| Vulnerable Software | Affected Versions |
|---|---|
| Before 9.0.0.4.386.41994 |
| Running on/with | Platform Versions |
|---|---|
Asus Rt Ac1900 | All versions |
Configuration Y
| Vulnerable Software | Affected Versions |
|---|---|
| Before 3.0.0.4.386.42095 |
Configuration Z
| Vulnerable Software | Affected Versions |
|---|---|
| Before 9.0.0.4.386.41994 |
| Running on/with | Platform Versions |
|---|---|
Asus Rt Ac1900p | All versions |
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 3.0.0.4.386.42095 |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Before 9.0.0.4.386.41994 |
| Running on/with | Platform Versions |
|---|---|
Asus Rt Ac1900u | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Before 3.0.0.4.386.42095 |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Before 9.0.0.4.386.41994 |
| Running on/with | Platform Versions |
|---|---|
Asus Rt Ac2900 | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Before 3.0.0.4.386.42095 |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Before 9.0.0.4.386.41994 |
| Running on/with | Platform Versions |
|---|---|
Asus Rt Ac3100 | All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Before 3.0.0.4.386.42095 |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| Before 9.0.0.4.386.41994 |
| Running on/with | Platform Versions |
|---|---|
Asus Rt Ac5300 | All versions |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| Before 3.0.0.4.386.42095 |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| Before 9.0.0.4.386.41994 |
| Running on/with | Platform Versions |
|---|---|
Asus Rt Ac58u | All versions |
Configuration K
| Vulnerable Software | Affected Versions |
|---|---|
| Before 3.0.0.4.386.42095 |
Configuration L
| Vulnerable Software | Affected Versions |
|---|---|
| Before 9.0.0.4.386.41994 |
| Running on/with | Platform Versions |
|---|---|
Asus Rt Ac65u | All versions |
Configuration M
| Vulnerable Software | Affected Versions |
|---|---|
| Before 3.0.0.4.386.42095 |
Configuration N
| Vulnerable Software | Affected Versions |
|---|---|
| Before 9.0.0.4.386.41994 |
| Running on/with | Platform Versions |
|---|---|
Asus Rt Ac68p | All versions |
Configuration O
| Vulnerable Software | Affected Versions |
|---|---|
| Before 3.0.0.4.386.42095 |
Configuration P
| Vulnerable Software | Affected Versions |
|---|---|
| Before 9.0.0.4.386.41994 |
| Running on/with | Platform Versions |
|---|---|
Asus Rt Ac68r | All versions |
Configuration Q
| Vulnerable Software | Affected Versions |
|---|---|
| Before 3.0.0.4.386.42095 |
Configuration R
| Vulnerable Software | Affected Versions |
|---|---|
| Before 9.0.0.4.386.41994 |
| Running on/with | Platform Versions |
|---|---|
Asus Rt Ac68rw | All versions |
Configuration S
| Vulnerable Software | Affected Versions |
|---|---|
| Before 3.0.0.4.386.42095 |
Configuration T
| Vulnerable Software | Affected Versions |
|---|---|
| Before 9.0.0.4.386.41994 |
| Running on/with | Platform Versions |
|---|---|
Asus Rt Ac68u | All versions |
Configuration U
| Vulnerable Software | Affected Versions |
|---|---|
| Before 3.0.0.4.386.42095 |
Configuration V
| Vulnerable Software | Affected Versions |
|---|---|
| Before 9.0.0.4.386.41994 |
| Running on/with | Platform Versions |
|---|---|
Asus Rt Ac68w | All versions |
Configuration W
| Vulnerable Software | Affected Versions |
|---|---|
| Before 3.0.0.4.386.42095 |
Configuration X
| Vulnerable Software | Affected Versions |
|---|---|
| Before 9.0.0.4.386.41994 |
| Running on/with | Platform Versions |
|---|---|
Asus Rt Ac85u | All versions |
Configuration Y
| Vulnerable Software | Affected Versions |
|---|---|
| Before 3.0.0.4.386.42095 |
Configuration Z
| Vulnerable Software | Affected Versions |
|---|---|
| Before 9.0.0.4.386.41994 |
| Running on/with | Platform Versions |
|---|---|
Asus Rt Ac86u | All versions |
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 3.0.0.4.386.42095 |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Before 9.0.0.4.386.41994 |
| Running on/with | Platform Versions |
|---|---|
Asus Rt Ac88u | All versions |
References (54)
Source: cve@mitre.org
ProductVendor Advisory
Source: cve@mitre.org
ProductVendor Advisory
Source: cve@mitre.org
ProductVendor Advisory
Source: cve@mitre.org
ProductVendor Advisory
Source: cve@mitre.org
ProductVendor Advisory
Source: cve@mitre.org
ProductVendor Advisory
Source: cve@mitre.org
ProductVendor Advisory
Source: cve@mitre.org
ProductVendor Advisory
Source: cve@mitre.org
ProductVendor Advisory
Source: cve@mitre.org
ProductVendor Advisory
Source: cve@mitre.org
ProductVendor Advisory
Source: cve@mitre.org
ProductVendor Advisory
Source: cve@mitre.org
ProductVendor Advisory
Source: cve@mitre.org
ProductVendor Advisory
Source: cve@mitre.org
ProductVendor Advisory
Source: cve@mitre.org
ProductVendor Advisory
Source: cve@mitre.org
ProductVendor Advisory
Source: cve@mitre.org
ProductVendor Advisory
Source: cve@mitre.org
ProductVendor Advisory
Source: cve@mitre.org
ProductVendor Advisory
Source: cve@mitre.org
ProductVendor Advisory
Source: cve@mitre.org
ProductVendor Advisory
Source: cve@mitre.org
ProductVendor Advisory
Source: cve@mitre.org
ProductVendor Advisory
Source: cve@mitre.org
ProductVendor Advisory
Source: cve@mitre.org
ProductVendor Advisory
Source: cve@mitre.org
ProductVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ProductVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ProductVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ProductVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ProductVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ProductVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ProductVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ProductVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ProductVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ProductVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ProductVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ProductVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ProductVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ProductVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ProductVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ProductVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ProductVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ProductVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ProductVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ProductVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ProductVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ProductVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ProductVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ProductVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ProductVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ProductVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ProductVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ProductVendor Advisory
Timeline
No history available yet.