{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/products/dir-825-3.00b32/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":["cpe:2.3:h:dlink:dir-825:3.00b32:*:*:*:*:*:*:*"],"_cs_cves":[{"cvss":9.8,"id":"CVE-2026-96891"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["DIR-825 (3.00b32)"],"_cs_severities":["critical"],"_cs_tags":["vulnerability","cve","network-security"],"_cs_type":"advisory","_cs_vendors":["D-Link"],"content_html":"\u003cp\u003eCVE-2026-96891 is a critical security vulnerability discovered in the D-Link DIR-825 router, specifically affecting firmware version 3.00b32. The flaw resides within the tunnel_set_params function located in the rp-l2tp component, specifically within the source file tunnel.c. An attacker can trigger the vulnerability by sending a maliciously crafted input to the peer_hostname argument. Because the input handling fails to properly validate memory boundaries, this manipulation results in an out-of-bounds write condition. This flaw is remotely exploitable, posing a significant risk to affected devices by potentially allowing unauthenticated remote code execution or causing persistent denial-of-service conditions through device instability and memory corruption.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eThe vulnerability carries a CVSS v3.1 base score of 9.8, indicating a high potential for severe impact. Successful exploitation allows remote attackers to compromise the integrity and availability of the affected D-Link DIR-825 hardware. This may lead to total device takeover or system crashes, impacting network availability for organizations or home users relying on this router.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003col\u003e\n\u003cli\u003eIdentify all D-Link DIR-825 devices running firmware version 3.00b32 within the organization's network inventory.\u003c/li\u003e\n\u003cli\u003eRestrict management interface access for identified devices to trusted administrative subnets until a vendor patch is applied.\u003c/li\u003e\n\u003cli\u003eMonitor ingress traffic to the device for unusual strings or payload patterns targeting L2TP configurations that might indicate exploitation attempts.\u003c/li\u003e\n\u003cli\u003eContact D-Link support or check the official product security portal for firmware updates resolving CVE-2026-96891.\u003c/li\u003e\n\u003c/ol\u003e\n","date_modified":"2026-09-24T04:45:51Z","date_published":"2026-09-24T04:45:51Z","id":"https://feed.craftedsignal.io/briefs/2026-09-dlink-dir825-oob-write/","summary":"A critical out-of-bounds write vulnerability in the D-Link DIR-825 firmware (version 3.00b32) allows remote attackers to trigger memory corruption via the peer_hostname parameter.","title":"Remote Out-of-Bounds Write in D-Link DIR-825","url":"https://feed.craftedsignal.io/briefs/2026-09-dlink-dir825-oob-write/"}],"language":"en","title":"CraftedSignal Threat Feed - DIR-825 (3.00b32)","version":"https://jsonfeed.org/version/1.1"}