Impact
An out‑of‑bounds write occurs in the rp‑l2tp component's tunnel_set_params function when the peer_hostname argument is processed, allowing an attacker to corrupt memory on the D‑Link DIR‑825 router. The flaw, rated with a CVSS score of 9.3, indicates a high possibility of remote exploitation that could lead to code execution or service interruption.
Affected Systems
The vulnerability affects D‑Link DIR‑825 routers running firmware version 3.00b32. No other firmware revisions or product variants are listed in the CNA data.
Risk and Exploitability
The flaw is remotely exploitable via the L2TP protocol, requiring only network access to the router. Because the EPSS score is unavailable, the exact likelihood of active exploitation is unknown, and the flaw has not yet appeared in CISA’s KEV catalog. Nevertheless, the high CVSS rating and the ability to overwrite memory make it a serious risk that could allow attackers to take control of the device or cause a denial of service.
OpenCVE Enrichment