Executive brief
D-Link DIR-822A is a wireless router used to provide network connectivity in homes and small businesses. A vulnerability in its L2TP (Layer 2 Tunneling Protocol) control message handler allows a remote attacker to write data beyond allocated memory boundaries, potentially leading to device crashes, unauthorized access, or complete system compromise.
Technical details
The vulnerability is an out-of-bounds write flaw in the tunnel_set_params function of the L2TP Control Message Parser component in D-Link DIR-822A firmware version A_101. The vulnerability can be triggered remotely without authentication by sending specially crafted L2TP control messages. An attacker can exploit this to overwrite adjacent memory regions, potentially achieving remote code execution or denial of service. The exploit details have been publicly disclosed.
Affected products
- D-Link DIR-822A A_101
Timeline
- 2026-09-08: disclosed