Back

CRITICAL

D-Link DIR-825 rp-l2tp tunnel.c tunnel_set_params out-of-bounds write

Published Sep 24, 2026

Description

A vulnerability was identified in D-Link DIR-825 3.00b32. Affected is the function tunnel_set_params of the file tunnel.c of the component rp-l2tp. The manipulation of the argument peer_hostname  leads to out-of-bounds write. The attack may be initiated remotely.

Affected products

Remediation

No remediation recorded yet.

References (7)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner VulDB
Published Sep 24, 2026
Updated Sep 24, 2026
Reserved Sep 23, 2026

CISA Vulnrichment

Updated Sep 24, 2026

NVD

Status Received
Modified Sep 24, 2026

Red Hat

No data

ENISA EUVD

Assigner VulDB
Published Sep 24, 2026
Updated Sep 24, 2026

GitHub

No data