Stack-based Buffer Overflow Vulnerability in D-Link DIR-878
CVE-2026-90692

9.4CRITICAL

Key Information:

Vendor

D-link

Status
Vendor
CVE Published:
14 September 2026

What is CVE-2026-90692?

A stack-based buffer overflow vulnerability exists in the D-Link DIR-878 router within the SetDynamicDNSIPv6Settings function. This vulnerability arises when the IPv6Address/Hostname argument is manipulated, allowing attackers to execute a remote attack. Malicious actors can exploit this flaw to disrupt the functionality of affected devices, posing a significant risk to the integrity and security of network operations.

Affected Version(s)

DIR-878 120B05

References

CVSS V4

Score:
9.4
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

AmaIIl (VulDB User)
.