Executive brief
The TOTOLINK A3002RU is a wireless router used in home and small office networks. An authenticated attacker can overflow a stack buffer by sending a specially crafted request with an oversized routernamer parameter, potentially allowing code execution and full device compromise.
Technical details
This vulnerability is a stack-based buffer overflow in the formDnsv6 function of the boa web service interface. The vulnerable component fails to validate the length of the routernamer parameter before copying it via strcpy into a fixed-size stack buffer. An authenticated attacker can craft a request that exceeds the buffer boundary, overwriting stack memory including return pointers. Successful exploitation allows arbitrary code execution with the privileges of the web service process. The vulnerability affects TOTOLINK A3002RU firmware versions up to V2.1.1-B20211108.1455; patch availability is not confirmed in the advisory.
Affected products
- TOTOLINK A3002RU V2.1.1-B20211108.1455 and earlier
Timeline
- 2026-02-17: disclosed