CVE-2025-25609: Buffer Overflow
TOTOlink A3002R V1.1.1-B20200824.0128 contains a buffer overflow vulnerability. The vulnerability arises from the improper input validation of the staticipv6 parameter in the formIpv6Setup interface of /bin/boa
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-25609?
CVE-2025-25609 is classified as a high-severity vulnerability due to the potential for remote code execution through buffer overflow.
How do I fix CVE-2025-25609?
To mitigate CVE-2025-25609, update TOTOlink A3002R firmware to the latest version that addresses this buffer overflow vulnerability.
What vulnerability is present in TOTOlink A3002R related to CVE-2025-25609?
CVE-2025-25609 is due to a buffer overflow vulnerability caused by improper input validation of the static_ipv6 parameter in the formIpv6Setup interface.
What are the exploits associated with CVE-2025-25609?
Exploiting CVE-2025-25609 can allow attackers to execute arbitrary code or crash the firmware due to improper handling of input data.
Is CVE-2025-25609 specific to certain firmware versions?
Yes, CVE-2025-25609 specifically affects TOTOlink A3002R firmware version V1.1.1-B20200824.0128.