Impact
A stack-based buffer overflow occurs in the sub_41802C function that processes the fota_url argument for LTE firmware upgrades. A malformed URL can overwrite the stack, potentially allowing arbitrary code execution and full compromise of the device. The flaw carries a CVSS score of 9.4, indicating a critical severity and posing severe confidentiality, integrity and availability risks.
Affected Systems
The vulnerability affects D‑Link DIR‑825M routers that run firmware version 1.1.8. Any deployment of this model with the exposed LTE firmware upgrade interface is potentially vulnerable.
Risk and Exploitability
The high CVSS score signals a critical risk, and an exploit has already been published and may be used. No EPSS score is currently available, but the remote attack vector is clear: an attacker can trigger the overflow via the web interface or other remote management channels that expose the LTE firmware upgrade function. The vulnerability is not listed in CISA’s KEV catalog, yet its criticality warrants immediate attention.
OpenCVE Enrichment