CVE-2025-69766: Buffer Overflow
Tenda AX3 firmware v16.03.12.11 contains a stack-based buffer overflow in the formGetIptv function due to improper handling of the citytag stack buffer, which may result in memory corruption and remote code execution.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-69766?
CVE-2025-69766 has a high severity due to its potential for memory corruption and remote code execution.
How do I fix CVE-2025-69766?
To fix CVE-2025-69766, update the Tenda AX3 firmware to the latest version provided by the manufacturer.
What causes CVE-2025-69766?
CVE-2025-69766 is caused by a stack-based buffer overflow in the formGetIptv function due to improper handling of the citytag stack buffer.
Who is affected by CVE-2025-69766?
CVE-2025-69766 affects users of the Tenda AX3 firmware version v16.03.12.11.
What are the potential impacts of CVE-2025-69766?
The potential impacts of CVE-2025-69766 include memory corruption and the ability for an attacker to execute remote code.