CVE-2026-100740 PUBLISHED

D-Link DIR-895L L2TP Control Channel tunnel.c tunnel_set_params out-of-bounds write

Assigner: VulDB
Reserved: 26.09.2026 Published: 27.09.2026 Updated: 27.09.2026

A vulnerability was detected in D-Link DIR-895L A1_102b07. Impacted is the function tunnel_set_params of the file tunnel.c of the component L2TP Control Channel Parser. Performing a manipulation results in out-of-bounds write. The attack may be initiated remotely. The exploit is now public and may be used.

Metrics

CVSS Vector: CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:P
CVSS Score: 9.4

Product Status

Vendor D-Link
Product DIR-895L
Versions
  • Version A1_102b07 is affected

Credits

  • tian (VulDB User) reporter

References

Problem Types

  • Out-of-bounds Write CWE
  • Memory Corruption CWE