VYPR
Unrated severityNVD Advisory· Published Aug 19, 2026

CVE-2026-19508

CVE-2026-19508

Description

Heap-based buffer overflow in the multipart form-data parser in jst_post.c in RDK-B WebUI rdkb-2025q4-kirkstone.04.10.26 allows a remote unauthenticated attacker to cause memory corruption and denial of service, and potentially execute arbitrary code, via a crafted multipart/form-data request.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

1
  • RDK B/WebUIllm-fuzzy
    Range: rdkb-2025q4-kirkstone.04.10.26

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.