CVE-2025-29214 Details
Description
Tenda AX12 v22.03.01.46_CN was discovered to contain a stack overflow via the sub_42F69C function at /goform/setMacFilterCfg.
A stack overflow vulnerability has been identified in the Tenda AX12 router running firmware version V22.03.01.46_CN. The issue arises in the 'sub_42F69C' function within the '/goform/setMacFilterCfg' endpoint, where the function copies data from the request body into a stack buffer without proper length validation. This vulnerability can be exploited by sending a crafted request that includes a deviceList field value containing a carriage return character, along with a large amount of additional data, exceeding 160 bytes. Exploiting this vulnerability causes a segmentation fault, disrupting the router's normal operation and potentially leading to a denial-of-service condition.
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
CISA-ADP
Assessed Mar 21, 2025References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://github.com/isstabber/my_VulnHub/blob/main/Tenda/AX12/tenda_ax12_setMacFilterCfg_stack_overflow_en.pdf | CISA-ADP | ExploitThird Party Advisory |
| https://gist.github.com/isstabber/85fe01ed47ad7ef820f86bfbd64a022c | [email protected] | ExploitThird Party Advisory |
| https://github.com/isstabber/my_VulnHub/blob/main/Tenda/AX12/tenda_ax12_setMacFilterCfg_stack_overflow_en.pdf | [email protected] | ExploitThird Party Advisory |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-121 | Stack-based Buffer Overflow | CISA-ADP |
Affected Products
| Product | Versions |
|---|---|
| tenda ax12 firmware | 22.03.01.46_cn |
CPE
Remediation
| |
| tenda ax12 | All versions |
CPE
Remediation
| |
Change History
5 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | [email protected] |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Mar 25, 2025 | Initial Analysis | [email protected] |
| Mar 21, 2025 | CVE Modified | CISA-ADP |
| Mar 20, 2025 | New CVE Received | [email protected] |