CVE-2022-27152

Roku devices running RokuOS v9.4.0 build 4200 or earlier that uses a Realtek WiFi chip is vulnerable to Arbitrary file modification.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:roku:roku_os:*:*:*:*:*:*:*:*
OR cpe:2.3:h:roku:express:-:*:*:*:*:*:*:*
cpe:2.3:h:roku:express_4k\+:-:*:*:*:*:*:*:*
cpe:2.3:h:roku:roku_tv:-:*:*:*:*:*:*:*
cpe:2.3:h:roku:streambar:-:*:*:*:*:*:*:*
cpe:2.3:h:roku:streambar_pro:-:*:*:*:*:*:*:*
cpe:2.3:h:roku:streaming_stick_4k:-:*:*:*:*:*:*:*
cpe:2.3:h:roku:streaming_stick_4k\+:-:*:*:*:*:*:*:*
cpe:2.3:h:roku:ultra:-:*:*:*:*:*:*:*
cpe:2.3:h:roku:wireless_speakers:-:*:*:*:*:*:*:*
cpe:2.3:h:roku:wireless_subwoofer:-:*:*:*:*:*:*:*

History

15 Apr 2022, 15:02

Type Values Removed Values Added
References (MISC) https://github.com/llamasoft/RootMyRoku - (MISC) https://github.com/llamasoft/RootMyRoku - Third Party Advisory
CWE NVD-CWE-noinfo
CVSS v2 : unknown
v3 : unknown
v2 : 2.7
v3 : 5.7
CPE cpe:2.3:h:roku:roku_tv:-:*:*:*:*:*:*:*
cpe:2.3:h:roku:express_4k\+:-:*:*:*:*:*:*:*
cpe:2.3:h:roku:streambar:-:*:*:*:*:*:*:*
cpe:2.3:h:roku:ultra:-:*:*:*:*:*:*:*
cpe:2.3:h:roku:wireless_subwoofer:-:*:*:*:*:*:*:*
cpe:2.3:h:roku:express:-:*:*:*:*:*:*:*
cpe:2.3:h:roku:wireless_speakers:-:*:*:*:*:*:*:*
cpe:2.3:h:roku:streaming_stick_4k:-:*:*:*:*:*:*:*
cpe:2.3:o:roku:roku_os:*:*:*:*:*:*:*:*
cpe:2.3:h:roku:streambar_pro:-:*:*:*:*:*:*:*
cpe:2.3:h:roku:streaming_stick_4k\+:-:*:*:*:*:*:*:*

08 Apr 2022, 19:16

Type Values Removed Values Added
New CVE

Information

Published : 2022-04-08 18:15

Updated : 2024-02-04 22:29


NVD link : CVE-2022-27152

Mitre link : CVE-2022-27152

CVE.ORG link : CVE-2022-27152


JSON object : View

Products Affected

roku

  • wireless_subwoofer
  • roku_tv
  • streambar_pro
  • streaming_stick_4k
  • express_4k\+
  • streambar
  • streaming_stick_4k\+
  • ultra
  • express
  • roku_os
  • wireless_speakers