D-Link 0-click Vulnerability Allows Remote Attackers to Crash the Server

A critical stack-based buffer overflow in the D-Link DIR-825 Rev.B 2.10 router firmware allows unauthenticated, zero-click remote attackers to crash the device’s HTTP server. Apply Firmware Update: D-Link must release a patched firmware version that enforces strict input validation on the language parameter and ensures proper bounds checking in sub_40bFC4. Once the overflowed NVRAM entry is saved, any subsequent request to a front-end ASP page (e.g., login.asp) triggers dynamic loading of a corresponding language JavaScript file. Intrusion Detection: Monitor for anomalous HTTP POST requests to switch_language.cgi containing abnormally long language values and flag or block these at the perimeter firewall. The overly long NVRAM entry corrupts the stack during sub_40bFC4, leading to an immediate crash of the httpd process without any authentication or explicit user action. According to the security researcher iC0rner, the flaw lies in the sub_410DDC function within the httpd executable, which directly accepts attacker-controlled input without length checks. Apply firmware patch, limit web-UI access, and flag unusually long language posts. Oversized language parameter in switch_language.cgi stored in NVRAM triggers the overflow. The returned string is passed through a convoluted series of internal functions—sub_40bFC4—where another unsafe concatenation writes beyond the intended buffer, ultimately causing a segmentation fault and crashing the service. Network Access Controls: Block access to the router’s web management interface from untrusted networks or the internet at large.

This Cyber News was published on cybersecuritynews.com. Publication date: Fri, 11 Jul 2025 10:40:13 +0000


Cyber News related to D-Link 0-click Vulnerability Allows Remote Attackers to Crash the Server

Click Profit blocked by the FTC over alleged e-commerce scams - Click Profit is an online business paltform promoted on social media and through websites that claims to help consumers generate passive income by setting up and managing e-commerce stores on Amazon, Walmart, and other platforms. The US Federal Trade ...
3 months ago Bleepingcomputer.com
CVE-2024-43876 - In the Linux kernel, the following vulnerability has been resolved: ...
6 months ago
CVE-2025-38248 - In the Linux kernel, the following vulnerability has been resolved: ...
5 days ago
D-Link D-View 8 Unauthenticated Probe-Core Server Communication - A security issue exists in D-Link D-View 8 v2.0.2.89 and prior that could allow an attacker to manipulate the probe inventory of the D-View service. An unauthenticated remote attacker can register a host of his/her choice as a Probe server by sending ...
1 year ago Tenable.com
Privacy Badger Puts You in Control of Widgets - The latest version of Privacy Badger replaces embedded tweets with click-to-activate placeholders. This is part of Privacy Badger's widget replacement feature, where certain potentially useful widgets are blocked and then replaced with placeholders. ...
1 year ago Eff.org
Critical Microsoft Telnet 0-Click Vulnerability Exposes Windows Credentials - “A critical 0-click remote authentication bypass vulnerability in Microsoft Telnet Server allows attackers to gain access as any user, including Administrator, without requiring valid credentials,” according to security researchers who ...
2 months ago Cybersecuritynews.com
CVE-2021-47146 - In the Linux kernel, the following vulnerability has been resolved: ...
1 year ago
CVE-2024-26830 - In the Linux kernel, the following vulnerability has been resolved: ...
1 year ago
CVE-2024-56786 - In the Linux kernel, the following vulnerability has been resolved: bpf: put bpf_link's program when link is safe to be deallocated In general, BPF link's underlying BPF program should be considered to be reachable through attach hook -> link -> prog ...
6 months ago Tenable.com
Facebook's New Privacy Nightmare: 'Link History' - Facebook is doubling down on tracking your behavior, despite the efforts of regulators worldwide. Its new Link History app feature is yet another AdTech privacy dark pattern. Meta's Mister Zuckerberg pretends it's all for the good of Facebook users. ...
1 year ago Securityboulevard.com
CVE-2020-16944 - <p>This vulnerability is caused when SharePoint Server does not properly sanitize a specially crafted request to an affected SharePoint server.</p> ...
1 year ago
D-Link confirms data breach after employee phishing attack - Taiwanese networking equipment manufacturer D-Link confirmed a data breach linked to information stolen from its network and put up for sale on BreachForums earlier this month. The attacker claims to have stolen source code for D-Link's D-View ...
1 year ago Bleepingcomputer.com
Google Chrome 136 Getting 20-Year-Old Visited Links Privacy Bug Fix - Chrome’s :visited link partitioning addresses this flaw head-on by storing link history with contextual details—specifically, the link URL, top-level site, and frame origin. Google Chrome’s version 136, released in April 2025, introduces ...
3 months ago Cybersecuritynews.com
CVE-2023-52574 - In the Linux kernel, the following vulnerability has been resolved: ...
1 year ago
CVE-2024-58071 - In the Linux kernel, the following vulnerability has been resolved: ...
4 months ago
CVE-2024-58093 - In the Linux kernel, the following vulnerability has been resolved: ...
2 months ago
D-Link 0-click Vulnerability Allows Remote Attackers to Crash the Server - A critical stack-based buffer overflow in the D-Link DIR-825 Rev.B 2.10 router firmware allows unauthenticated, zero-click remote attackers to crash the device’s HTTP server. Apply Firmware Update: D-Link must release a patched firmware version ...
3 days ago Cybersecuritynews.com
CVE-2024-51715 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in ClickWhale ClickWhale – Link Manager, Link Shortener and Click Tracker for Affiliate Links & Link Pages allows Blind SQL Injection.This issue ...
6 months ago Tenable.com
Apple 'AirBorne' flaws can lead to zero-click AirPlay RCE attacks - According to cybersecurity company Oligo Security security researchers who discovered and reported the flaws, they can be exploited in zero-click and one-click RCE attacks, man-in-the-middle (MITM) attacks, and denial of service (DoS) attacks, as ...
2 months ago Bleepingcomputer.com CVE-2025-24206
CVE-2020-8023 - A acceptance of Extraneous Untrusted Data With Trusted Data vulnerability in the start script of openldap2 of SUSE Enterprise Storage 5, SUSE Linux Enterprise Debuginfo 11-SP3, SUSE Linux Enterprise Debuginfo 11-SP4, SUSE Linux Enterprise Point of ...
4 years ago
CISA warns of hackers exploiting Chrome, EoL D-Link bugs - The U.S. Cybersecurity & Infrastructure Security Agency has added three security vulnerabilities to its 'Known Exploited Vulnerabilities' catalog, one impacting Google Chrome and two affecting some D-Link routers. Adding the issues to the KEV catalog ...
1 year ago Bleepingcomputer.com CVE-2024-4761 CVE-2021-40655
CVE-2022-49776 - In the Linux kernel, the following vulnerability has been resolved: ...
2 months ago
The ticking time bomb of Microsoft Exchange Server 2013 - This is, of course, a common issue since 2021 or so, due to Exchange Server security woes- however there has been an abnormally high increase in the past few months, making me think there was some kind of Exchange Server zero day perhaps. In my own ...
1 year ago Doublepulsar.com
CVE-2024-27087 - Kirby is a content management system. The new link field introduced in Kirby 4 allows several different link types that each validate the entered link to the relevant URL format. It also includes a "Custom" link type for advanced use cases ...
1 year ago
CVE-2020-8022 - A Incorrect Default Permissions vulnerability in the packaging of tomcat on SUSE Enterprise Storage 5, SUSE Linux Enterprise Server 12-SP2-BCL, SUSE Linux Enterprise Server 12-SP2-LTSS, SUSE Linux Enterprise Server 12-SP3-BCL, SUSE Linux Enterprise ...
4 years ago

Latest Cyber News


Cyber Trends (last 7 days)