Security Advisory

CVE-2025-67188

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-02-03 00:00:00
Last updated 2026-02-05 14:33:55
Assigner mitre
State PUBLISHED

Description

A buffer overflow vulnerability exists in TOTOLINK A950RG V4.1.2cu.5204_B20210112. The issue resides in the setRadvdCfg interface of the /lib/cste_modules/ipv6.so module. The function fails to properly validate the length of the user-controlled radvdinterfacename parameter, allowing remote attackers to trigger a stack buffer overflow.