CVE-2025-25527: Buffer Overflow
Buffer overflow vulnerability in Ruijie RG-NBR2600S Gateway 10.3(4b12) due to the lack of length verification, which is related to the configuration of source address NAT rules. Attackers who successfully exploit this vulnerability can cause the remote target device to crash or execute arbitrary commands.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-25527?
CVE-2025-25527 has a high severity level due to the potential for remote device crashes and arbitrary code execution.
How do I fix CVE-2025-25527?
To fix CVE-2025-25527, update the Ruijie RG-NBR2600S Gateway to the latest firmware version that addresses the buffer overflow vulnerability.
Who is affected by CVE-2025-25527?
Only users of the Ruijie RG-NBR2600S Gateway running version 10.3(4b12) are affected by CVE-2025-25527.
What kind of attacks can exploit CVE-2025-25527?
Attackers can exploit CVE-2025-25527 to crash the device or execute arbitrary commands on the affected Ruijie RG-NBR2600S Gateway.
When was CVE-2025-25527 disclosed?
CVE-2025-25527 was disclosed in 2025, highlighting the importance of patching vulnerable devices promptly.