CVE-2026-26736: Buffer Overflow
Published Feb 17, 2026
·Updated
TOTOLINK A3002RUV3 V3.0.0-B20220304.1804 was discovered to contain a stack-based buffer overflow via the staticipv6 parameter in the formIpv6Setup function.
Affected Software
3 affected components
TOTOLINK A3002RU
All of the following
TOTOLINK A3002ru Firmware<=3.0.0-b20220304.1804
TOTOLINK A3002ru-v3
Event History
Feb 17, 2026
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·07:21 PM
DescriptionSeverityWeaknessAffected Software
Nov 5, 58117
Event
via FIRST·09:18 PM
Frequently Asked Questions
1
What is the severity of CVE-2026-26736?
CVE-2026-26736 is classified as a high severity vulnerability due to its potential for exploitation through a stack-based buffer overflow.
2
How do I fix CVE-2026-26736?
To mitigate CVE-2026-26736, users should update their TOTOLINK A3002RU firmware to a version later than 3.0.0-B20220304.1804.
3
What systems are affected by CVE-2026-26736?
CVE-2026-26736 affects the TOTOLINK A3002RU with firmware version 3.0.0-B20220304.1804.
4
What type of vulnerability is CVE-2026-26736?
CVE-2026-26736 is a stack-based buffer overflow vulnerability.
5
Can CVE-2026-26736 allow remote code execution?
Yes, CVE-2026-26736 can potentially allow remote code execution due to the nature of the buffer overflow.