CVE Vulnerabilities

CVE-2025-60336

NULL Pointer Dereference

Published: Oct 22, 2025 | Modified: Oct 24, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

A NULL pointer dereference in the sub_41773C function of TOTOLINK N600R v4.3.0cu.7866_B20220506 allows attackers to cause a Denial of Service (DoS) via a crafted HTTP request.

Weakness

The product dereferences a pointer that it expects to be valid but is NULL.

Affected Software

Name Vendor Start Version End Version
N600r_firmware Totolink 4.3.0cu.7866_b20220506 (including) 4.3.0cu.7866_b20220506 (including)

Potential Mitigations

References