CVE-2025-45865: Buffer Overflow
Published May 13, 2025
·Updated
TOTOLINK A3002R v4.0.0-B20230531.1404 was discovered to contain a buffer overflow via the dnsaddr parameter in the formDhcpv6s interface.
Affected Software
3 affected components
TOTOLINK A3002R
All of the following
TOTOLINK A3002R Firmware=4.0.0-b20230531.1404
TOTOLINK A3002R
Event History
May 13, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-45865?
CVE-2025-45865 is classified with a high severity due to the potential for remote code execution resulting from the buffer overflow.
2
How do I fix CVE-2025-45865?
To mitigate CVE-2025-45865, users should update the TOTOLINK A3002R firmware to the latest version provided by the manufacturer.
3
What systems are affected by CVE-2025-45865?
CVE-2025-45865 specifically affects TOTOLINK A3002R devices running firmware version 4.0.0-B20230531.1404.
4
What is the primary vulnerability in CVE-2025-45865?
The primary vulnerability in CVE-2025-45865 is a buffer overflow that occurs via the dnsaddr parameter in the formDhcpv6s interface.
5
Is CVE-2025-45865 being actively exploited?
As of now, there is no publicly available information indicating that CVE-2025-45865 is being actively exploited.