PT-2026-91110 · D Link · Dir-878
CVSS v3.1
9.9
Critical
| Vector | AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
D-Link DIR-878 version 120B05
Description
A stack-based buffer overflow exists in the Dynamic DNS IPv6 Settings component. This issue occurs when the
SetDynamicDNSIPv6Settings() function improperly handles the IPv6Address/Hostname argument, allowing a remote attacker to compromise the confidentiality, integrity, and availability of the protected information.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
As a temporary workaround, consider restricting access to the
SetDynamicDNSIPv6Settings() function to minimize the risk of exploitation.Stack Overflow
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Dir-878