Executive brief
A security vulnerability exists in the Tenda G0 router, a device used to manage network traffic and connectivity. An attacker can send a specially crafted web request to the device's management interface to trigger a system crash. This results in a denial-of-service, cutting off internet access or network management capabilities for the organization until the device is recovered.
Technical details
A stack-based buffer overflow exists in the Tenda G0 v15.11.0.5 firmware within the 'formIPMacBindModify' function. The vulnerability is caused by the unsafe use of 'sprintf' when processing the 'IPMacBindRuleIp' and 'IPMacBindRuleMac' HTTP parameters retrieved via 'websGetVar'. An unauthenticated attacker can trigger this overflow by sending a crafted HTTP request with excessively long strings in these parameters. This leads to a memory corruption that causes the web service or the entire device to crash (Denial of Service). As of the advisory date, the vulnerability affects the latest version of the firmware.
Affected products
- Tenda G0 v15.11.0.5
Timeline
- 2026-03-17: other: CVE request submitted to MITRE
- 2026-06-06: disclosed: Public disclosure
- 2026-06-09: advisory: NVD published date