CVE-2026-86509
CRITICALCVSS 9.6Description
A flaw has been found in D-Link DIR-895L A1_102b07. This impacts the function sendOffer/sendACK of the file udhcpcd/serverpacket.c of the component udhcpcd. This manipulation causes stack-based buffer overflow. The attack can only be done within the local network. The exploit has been published and may be used.
Timeline
Published:September 8th, 2026 1:17 AM
Last modified:September 8th, 2026 1:17 AM
CVSS Scoring
CVSS v3: 9.6 (CRITICAL)
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
CVSS v2: 8.3
References & Reports
Advisories, patches, and third-party reports
Source: NIST NVD · Data may lag official sources by up to one minute