Out-Of-Bounds Write Vulnerability in Kenwood DNR1007XR Devices
CVE-2026-18269
6.8MEDIUM
What is CVE-2026-18269?
The Kenwood DNR1007XR devices contain an out-of-bounds write vulnerability within the tchdr_bytestream_read function. This flaw arises due to insufficient validation of user-supplied data, enabling physically present attackers to write past the end of an allocated buffer. Consequently, this can lead to arbitrary code execution with root privileges, posing a significant risk to device integrity. No authentication is required for exploitation, which further increases the potential for unauthorized access.
Affected Version(s)
DNR1007XR 1.7.0003.1000
