Impact
A stack-based buffer overflow in the strcpy function of the udhcpcd component's serverpacket.c file allows an attacker to overflow the stack when parsing DHCP options, potentially leading to remote code execution. The vulnerability is exploitable remotely, and it has been publicly disclosed. The flaw arises from unchecked input lengths processed by udhcpcd, which can overwrite control data and allow arbitrary code execution on the target device.
Affected Systems
The affected vendor is D-Link, specifically the DIR-822A model. No additional affected versions are listed in the CNA data; therefore the vulnerability applies to the device as sold under the DIR-822A designation.
Risk and Exploitability
The CVSS score of 10 indicates a critical severity. The EPSS score of 1% indicates a very low but non-zero exploitation probability. Because the vulnerability can be exploited remotely and has a published exploit, the risk remains high. The device is not listed in the CISA KEV catalog, but the publicly disclosed exploit increases the likelihood that attackers may target vulnerable units. An attacker can send crafted DHCP packets to the device, trigger the overflow, and gain code execution privileges on the device's underlying firmware.
OpenCVE Enrichment