Critical OpenWrt DHCPv6 Flaw Could Let Unauthenticated Attackers Run Code as Root

OpenWrt has shipped version 24.10.8 to close a critical DHCPv6 stack overflow and a wider set of remotely triggerable flaws in network services enabled by default.

The critical issue, tracked as CVE-2026-53921 and rated 9.8 on CVSS 3.1 in OpenWrt’s GitHub advisory, lets an unauthenticated attacker able to reach the DHCPv6 server overwrite a stack buffer in odhcpd through a crafted DHCPv6

Total
0
Shares
Leave a Reply

Your email address will not be published. Required fields are marked *

Previous Post

NVIDIA Forms 37-Member Open Secure AI Alliance and Open-Sources NOOA Framework

Next Post

JFrog Confirms OpenAI Models Exploited Artifactory Zero-Day Before Hugging Face Breach

Related Posts
Total
0
Share