CVE-2022-29321: Critical severity d-link dir-816l firmware vulnerability
Published May 10, 2022
·Updated
D-Link DIR-816 A2v1.10CNB04 was discovered to contain a stack overflow via the lanip parameter in /goform/setNetworkLan.
Affected Software
2 affected components
Dlink Dir-816 Firmware=1.10cnb04
Dlink DIR-816=a2
Event History
May 10, 2022
CVE Published
via MITRE·01:16 PM
Data Sourced
via MITRE·01:16 PM
Description
Frequently Asked Questions
1
What is CVE-2022-29321?
CVE-2022-29321 is a vulnerability found in D-Link DIR-816 A2_v1.10CNB04 firmware that allows for a stack overflow attack via the lanip parameter in /goform/setNetworkLan.
2
What is the severity of CVE-2022-29321?
The severity of CVE-2022-29321 is critical with a severity value of 9.8.
3
How does CVE-2022-29321 affect D-Link DIR-816 A2_v1.10CNB04?
CVE-2022-29321 affects D-Link DIR-816 A2_v1.10CNB04 by allowing an attacker to exploit a stack overflow vulnerability via the lanip parameter in /goform/setNetworkLan.
4
Is D-Link DIR-816 A2_v1.10CNB04 the only affected software version?
Yes, D-Link DIR-816 A2_v1.10CNB04 is the only affected software version.
5
How can I fix CVE-2022-29321?
To fix CVE-2022-29321, it is recommended to update the firmware of D-Link DIR-816 A2_v1.10CNB04 to a secure version provided by D-Link.