VYPR
Unrated severityNVD Advisory· Published Feb 3, 2026· Updated Feb 5, 2026

CVE-2025-67188

CVE-2025-67188

Description

A buffer overflow vulnerability exists in TOTOLINK A950RG V4.1.2cu.5204_B20210112. The issue resides in the setRadvdCfg interface of the /lib/cste_modules/ipv6.so module. The function fails to properly validate the length of the user-controlled radvdinterfacename parameter, allowing remote attackers to trigger a stack buffer overflow.

Affected products

2
  • TOTOLINK/A950RGdescription
  • Totolink/A950RGllm-create
    Range: = V4.1.2cu.5204_B20210112

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.