Out-of-Bounds Write Vulnerability in D-Link DIR-825 Router
CVE-2026-96891
9.3CRITICAL
What is CVE-2026-96891?
A critical out-of-bounds write vulnerability has been identified in the D-Link DIR-825 router, specifically in the function tunnel_set_params found in tunnel.c, related to the rp-l2tp component. This issue arises when the peer_hostname argument is manipulated, allowing an attacker to conduct a remote exploit. Successful exploitation can lead to unauthorized memory access, potentially compromising system integrity.
Affected Version(s)
DIR-825 3.00b32