Dismissed
(no matching packages found)
Activity log
- Created & dismissed (no matching packages found) suggestion
RDK WebUI heap-based buffer overflow vulnerability
Heap-based buffer overflow in the multipart form-data parser in `jst_post.c` in RDK-B WebUI `rdkb-2025q4-kirkstone.04.10.26` allows a remote unauthenticated attacker to cause memory corruption and denial of service, and potentially execute arbitrary code, via a crafted multipart/form-data request.
References
Affected products
RDK-B WebUI
- ==rdkb-2025q4-kirkstone