CVE-2026-19386: Buffer Overflow
Published Oct 7, 2026
·Updated
A stack-based buffer overflow in the ASUS router modules allows an authenticated nearby user to execute arbitrary code via a crafted configuration file upload that exceeds the expected buffer size.Refer to the ' Security Update for ASUS Router Firmware ' section on the ASUS Security Advisory for more information.
Affected Software
1 affected component
ASUS ASUS Router Firmware
Event History
Oct 7, 2026
CVE Published
via MITRE·02:05 AM
Data Sourced
via MITRE·02:05 AM
DescriptionWeakness
Data Sourced
via NVD·02:16 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What access does an attacker need to exploit this issue?
The attacker must be an authenticated user located nearby and able to upload a crafted router configuration file that exceeds the expected buffer size.
2
How can I determine whether a router is affected?
The provided information does not identify affected firmware versions or detection indicators. Review the ASUS Security Advisory referenced for the applicable firmware guidance.