CVE-2025-41679: Unauthenticated Buffer Overflow in Conftool Service Leading to Denial of Service
Published Jul 21, 2025
·Updated
An unauthenticated remote attacker could exploit a buffer overflow vulnerability in the device causing a denial of service that affects only the network initializing wizard (Conftool) service.
Affected Software
2 affected components
All of the following
Mbconnectline Mbnet.mini Firmware<2.3.3
Mbconnectline Mbnet.mini
Event History
Jul 21, 2025
CVE Published
via MITRE·09:31 AM
Data Sourced
via MITRE·09:31 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·10:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-41679?
CVE-2025-41679 has a high severity rating due to its potential to cause denial of service via a buffer overflow.
2
How does CVE-2025-41679 affect the system?
CVE-2025-41679 affects the network initializing wizard (Conftool) service, allowing remote unauthenticated attackers to exploit it.
3
How do I fix CVE-2025-41679?
To mitigate CVE-2025-41679, update the firmware to version 2.3.4 or later, as earlier versions are vulnerable.
4
Which devices are affected by CVE-2025-41679?
CVE-2025-41679 affects the Mbconnectline Mbnet.mini device running firmware versions up to 2.3.3.
5
Can CVE-2025-41679 be exploited remotely?
Yes, CVE-2025-41679 can be exploited remotely by an unauthenticated attacker.