chiprook
← Security
SecurityOctober 8, 2026, 00:40

Two critical flaws found in D-Link DIR-822A router

Two memory-safety bugs were disclosed in the D-Link DIR-822A router on firmware A_101, both with public proof-of-concept code: a stack buffer overflow in the DHCP server (CVE-2026-86296, CVSS 10.0) and an out-of-bounds write in the L2TP parser (CVE-2026-86510, CVSS 9.9). Both require LAN access and can crash the device or lead to code execution. No patch is available yet.

Two critical flaws found in D-Link DIR-822A router
#D-Link#DIR-822A
Read next
Security

CVE-2026-86510: out-of-bounds write in D-Link DIR-822A L2TP daemon

Security

Asus patches critical flaws in routers and motherboards

Security

Two critical vulnerabilities found in Radicle network protocol

Security

Anthropic's Mythos AI found a critical Rejetto HFS flaw now exploited in the wild