CVE-2025-0492: D-Link DIR-823X FUN_00412244 null pointer dereference
Published Jan 15, 2025
·Updated
A vulnerability has been found in D-Link DIR-823X 240126/240802 and classified as critical. Affected by this vulnerability is the function FUN00412244. The manipulation leads to null pointer dereference. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
4 affected components
D-Link DIR-823X>=240126<=240802
All of the following
Any of the following
Dlink Dir-823x Firmware=240126
Dlink Dir-823x Firmware=240802
Dlink Dir-823x
Event History
Jan 15, 2025
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·10:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-0492?
CVE-2025-0492 is classified as a critical vulnerability.
2
How do I fix CVE-2025-0492?
To resolve CVE-2025-0492, update your D-Link DIR-823X router to the latest firmware version.
3
What causes the CVE-2025-0492 vulnerability?
CVE-2025-0492 is caused by a null pointer dereference in the function FUN_00412244.
4
Can CVE-2025-0492 be exploited remotely?
Yes, CVE-2025-0492 can be exploited remotely by an attacker.
5
Which devices are affected by CVE-2025-0492?
CVE-2025-0492 affects D-Link DIR-823X devices with firmware versions between 240126 and 240802.