A stack overflow vulnerability exists in pingV4Msg component in D-Link DIR820LA1_FW105B03, allows attackers to cause a denial of service via the nextPage parameter to ping.ccp.
The product writes data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
https://www.dlink.com/en/security-bulletin/ | vendor advisory |
https://github.com/migraine-sudo/D_Link_Vuln/tree/main/stackoverflow%20cancelPing | third party advisory exploit |