CVE-2026-26731: Buffer Overflow
Published Feb 17, 2026
·Updated
TOTOLINK A3002RU V2.1.1-B20211108.1455 was discovered to contain a stack-based buffer overflow via the routernamerparameter in the formDnsv6 function.
Affected Software
3 affected components
TOTOLINK A3002RU
All of the following
TOTOLINK A3002ru Firmware=2.1.1-b20211108.1455
TOTOLINK A3002RU-V2
Event History
Feb 17, 2026
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·07:21 PM
DescriptionSeverityWeaknessAffected Software
Aug 25, 58175
Event
via NVD·12:50 PM
Frequently Asked Questions
1
What is the severity of CVE-2026-26731?
CVE-2026-26731 has been classified with a high severity due to the potential for remote code execution resulting from the stack-based buffer overflow.
2
How do I fix CVE-2026-26731?
To fix CVE-2026-26731, update the TOTOLINK A3002RU firmware to the latest version provided by the vendor.
3
What type of vulnerability is CVE-2026-26731?
CVE-2026-26731 is a stack-based buffer overflow vulnerability affecting the TOTOLINK A3002RU router.
4
What can be exploited in CVE-2026-26731?
CVE-2026-26731 can be exploited by attackers sending malicious input through the `routernamer` parameter in the formDnsv6 function.
5
Which devices are affected by CVE-2026-26731?
CVE-2026-26731 specifically affects the TOTOLINK A3002RU with firmware version 2.1.1-B20211108.1455.