CVE-2026-51604: Buffer Overflow
Published Jul 9, 2026
·Updated
A stack-based buffer overflow vulnerability in the RTSP service of Tenda CP3 V3.0 (firmware V31.1.9.91) allows an unauthenticated remote attacker to cause a denial of service via a crafted PLAY request.
Affected Software
1 affected component
Tenda CP3=V3.0 (firmware V31.1.9.91)
Event History
Jul 9, 2026
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:17 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-51604?
CVE-2026-51604 has a high severity rating of 7.5 based on the CVSS v3.1 scoring.
2
What types of attacks can be executed using CVE-2026-51604?
CVE-2026-51604 can be exploited by unauthenticated remote attackers to cause a denial of service.
3
What device is affected by CVE-2026-51604?
CVE-2026-51604 affects the Tenda CP3 V3.0 with firmware version V31.1.9.91.
4
How do I patch CVE-2026-51604?
To fix CVE-2026-51604, you should update the Tenda CP3 firmware to the latest version that addresses this vulnerability.
5
What impact does CVE-2026-51604 have on the affected system?
CVE-2026-51604 can lead to a denial of service, causing the affected system to become unresponsive.