cbcvebase.
CVE-2025-4450
published 2025-05-09

CVE-2025-4450: A vulnerability, which was classified as critical, was found in D-Link DIR-619L 2.04B04. Affected is the function formSetEasy_Wizard. The manipulation of the…

high8.7CVSS 4.0
AVNACLATNPRLUINVCHVIHVAHSCNSINSANEXCRXIRXARXMAVXMACXMATXMPRXMUIXMVCXMVIXMVAXMSCXMSIXMSAXSXAUXRXVXREXUX
A vulnerability, which was classified as critical, was found in D-Link DIR-619L 2.04B04. Affected is the function formSetEasy_Wizard. The manipulation of the argument curTime leads to buffer overflow. It is possible to launch the attack remotely. The vendor was contacted early about this disclosure. This vulnerability only affects products that are no longer supported by the maintainer.

Affected

15 ranges
VendorProductVersion rangeFixed in
d-linkdir-619l
dlinkdir-619l_firmware
msrcazl3_edk2_20230301gitf80f052277c8-37_on_azure_linux_3.0
msrcazl3_hvloader_1.0.1-2_on_azure_linux_3.0
msrcazl3_hvloader_1.0.1-4_on_azure_linux_3.0
msrcazl3_rust_1.75.0-14_on_azure_linux_3.0
msrcazl3_rust_1.86.0-1_on_azure_linux_3.0
msrccbl2_cloud-hypervisor_30.0-2_on_cbl_mariner_2.0
msrccbl2_hvloader_1.0.1-2_on_cbl_mariner_2.0
msrccbl2_openssl_1.1.1k-21_on_cbl_mariner_2.0
msrccbl2_qemu_6.2.0-24_on_cbl_mariner_2.0
msrccbl2_rust_1.68.2-5_on_cbl_mariner_2.0
msrccm1_cloud-hypervisor_22.0-2_on_cbl_mariner_1.0
msrccm1_openssl_1.1.1k-13_on_cbl_mariner_1.0
msrccm1_rust_1.59.0-1_on_cbl_mariner_1.0