轉發 台灣電腦網路危機處理暨協調中心 TWCERTCC-200-202507-00000017
[內容說明]
【亞旭|數據機 - Stack-based Buffer Overflow】(CVE-2025-7921,CVSS:9.8) 亞旭開發之部分數據機型號存在Stack-based Buffer Overflow漏洞,未經身分鑑別之遠端攻擊者可控制程式執行流程,並有機會執行任意程式碼。
[影響平台]
設備型號:RTF8207w與RTF8217
韌體版本:R82XXR250718(不含)以前版本
[建議措施]
更新韌體版本至R82XXR250718(含)以後版本
[參考資料]
https://www.twcert.org.tw/tw/cp-132-10268-1583b-1.html
Forwarded by Taiwan Computer Network Crisis Management and Coordination Center TWCERTCC-200-202507-00000017
[Content Description]
[Askey|Modem - Stack-based Buffer Overflow] (CVE-2025-7921, CVSS: 9.8) Some modem models developed by Askey have a Stack-based Buffer Overflow vulnerability. Unauthenticated remote attackers can control the program execution process and have the opportunity to execute arbitrary code.
[Affected Platform]
Device Model: RTF8207w and RTF8217
Firmware Version: R82XXR250718 (not included) and previous versions
[Recommended Measures]
Update the firmware version to R82XXR250718 (inclusive) and later versions
[References]
https://www.twcert.org.tw/tw/cp-132-10268-1583b-1.html