CVE-2026-24115: Buffer Overflow
Published Mar 2, 2026
·Updated
An issue was discovered in Tenda W20E V4.0brV15.11.0.6. Failure to validate the sizes of gstup and gstdwn before concatenating them into gstruleQos may lead to buffer overflow.
Affected Software
3 affected components
Tenda W20E
All of the following
Tenda W20e Firmware=15.11.0.6
Tenda W20E=4.0
Event History
Mar 2, 2026
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·03:16 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2026-24115?
CVE-2026-24115 is classified as a high-severity vulnerability due to the potential for buffer overflow.
2
How do I fix CVE-2026-24115?
To fix CVE-2026-24115, ensure your Tenda W20E device firmware is updated to the latest version.
3
What software versions are affected by CVE-2026-24115?
CVE-2026-24115 affects Tenda W20E firmware version 15.11.0.6.
4
What is a buffer overflow?
A buffer overflow is a programming error that occurs when data exceeds a buffer's storage capacity, potentially leading to arbitrary code execution.
5
Can CVE-2026-24115 lead to remote exploitation?
Yes, CVE-2026-24115 could potentially be exploited remotely if an attacker is able to send specially crafted input to the affected device.