CVE-2025-25664: Critical severity Tenda AC8V4 vulnerability
Published Feb 20, 2025
·Updated
Tenda AC8V4 V16.03.34.06 was discovered to contain a stack overflow via the shareSpeed parameter in the sub49E098 function.
Affected Software
3 affected components
Tenda AC8V4
All of the following
Tenda Ac8 Firmware=16.03.34.06
Tenda AC8=4.0
Event History
Feb 20, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·11:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-25664?
CVE-2025-25664 is classified as a high severity vulnerability due to the potential for a stack overflow exploit.
2
How do I fix CVE-2025-25664?
To fix CVE-2025-25664, update the Tenda AC8V4 to the latest firmware version that addresses this vulnerability.
3
What are the potential impacts of CVE-2025-25664?
Exploitation of CVE-2025-25664 may allow an attacker to execute arbitrary code on the affected Tenda AC8V4 device.
4
Which devices are affected by CVE-2025-25664?
CVE-2025-25664 specifically affects the Tenda AC8V4 router running firmware version V16.03.34.06.
5
Is CVE-2025-25664 exploitable remotely?
Yes, CVE-2025-25664 can potentially be exploited remotely if an attacker can access the vulnerable parameters.