Resource Leak Exposure in ASR180x and ASR190x by ASR Micro
CVE-2025-49482

5.4MEDIUM

Key Information:

Vendor

Asr

Vendor
CVE Published:
1 July 2025

What is CVE-2025-49482?

A vulnerability has been identified in the ASR180x and ASR190x products by ASR Micro, specifically within the TR069 modules. This flaw leads to resource leak exposure, allowing potential exploitation. It impacts several operating environments, including Falcon_Linux, Kestrel, and Lapwing_Linux, for versions prior to 1536. Addressing this vulnerability is crucial to maintaining system integrity and security. Users are encouraged to evaluate their systems and implement necessary updates to mitigate these risks.

Affected Version(s)

Falcon_Linux、Kestrel、Lapwing_Linux Linux 0

References

CVSS V3.1

Score:
5.4
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-49482 : Resource Leak Exposure in ASR180x and ASR190x by ASR Micro